PoC Index

CVE-2025-40554

CRITICAL 9.8EPSS 58.4%

SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that, if exploited, could allow an attacker to invoke specific actions within Web Help Desk.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
58.45% chance of exploitation in the next 30 days, 99th percentile
Nuclei
critical · CWE-1390
Published
2026-01-28
Updated
2026-02-26

Proof-of-concept exploits (2)

Nuclei templates (1)

References

Related