CVE-2015-7839: SolarWinds Log And Event Manager

High severity, CVSS 7.5. EPSS: 6.9% chance of exploitation in the next 30 days.

SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.

Affected products

Published 2015-10-15. Last modified 2026-06-17.