CVE-2015-2284: SolarWinds Firewall Security Manager

High severity, CVSS 10.0. EPSS: 73.5% chance of exploitation in the next 30 days.

userlogin.jsp in SolarWinds Firewall Security Manager (FSM) before 6.6.5 HotFix1 allows remote attackers to gain privileges and execute arbitrary code via unspecified vectors, related to client session handling.

Affected products

  • SolarWinds Firewall Security Manager: up to and including 6.6.5

Published 2015-03-24. Last modified 2026-06-17.