vendor:
Log Event Manager
by:
Exploit Database
9,8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Log Event Manager
Affected Version From: 6.1.0
Affected Version To: 6.1.0
Patch Exists: YES
Related CWE: N/A
CPE: a:solarwinds:log_event_manager
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Ubuntu 14.04 LTS
2018
SolarWinds LEM 6.1.0 Remote Code Execution
The exploit_lem.py script can be used to gain access to the appliance, and a new admin user can be added to the web console by editing /usr/local/contego/run/manager/UserContextLibrary.xml. The gen_pass_hash.py script can be used to generate a valid password hash.
Mitigation:
Upgrade to the latest version of SolarWinds LEM.