CVE-2014-3459: SolarWinds Network Configuration Manager

Medium severity, CVSS 6.8. EPSS: 11.6% chance of exploitation in the next 30 days.

Heap-based buffer overflow in SolarWinds Network Configuration Manager (NCM) before 7.3 allows remote attackers to execute arbitrary code via the PEstrarg1 property.

Affected products

  • SolarWinds Network Configuration Manager: up to and including 7.2.2; version 7.2.0 only; version 7.2.1 only

Published 2014-08-07. Last modified 2026-06-17.