CVE-2015-7839: SolarWinds Log And Event Manager
High severity, CVSS 7.5. EPSS: 6.9% chance of exploitation in the next 30 days.
SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.
Affected products
- SolarWinds Log And Event Manager: any version
Published 2015-10-15. Last modified 2026-06-17.