CVE-2019-16960: SolarWinds Web Help Desk

Medium severity, CVSS 5.4. EPSS: 1.3% chance of exploitation in the next 30 days.

SolarWinds Web Help Desk 12.7.0 allows XSS via a CSV template file with a crafted Location Name field.

Affected products

Published 2021-01-04. Last modified 2026-06-17.