Intrusion Prevention



This indicates an attack attempt to exploit a Remote Code Execution Vulnerability in SolarWinds Orion NPM.
A remote, unauthenticated attacker can exploit this vulnerability by sending a crafted InvokeActionMethod request to the target system. Successful exploitation results in the execution of arbitrary code on the target system with the SYSTEM privileges.

Affected Products

SolarWinds Orion NPM prior to 12.4


System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Refer to the vendor supplied advisory for updates:

CVE References