CVE-2025-40536
SolarWinds Web Help Desk Security Control Bypass Vulnerability
⚠ KEVEPSS 67.5%
Description
SolarWinds Web Help Desk contains a security control bypass vulnerability that could allow an unauthenticated attacker to gain access to certain restricted functionality.
How to fix CVE-2025-40536
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2025-40536 being exploited?
Yes — CVE-2025-40536 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.