CVE-2020-13169: SolarWinds Orion Platform
Critical severity, CVSS 9.0. EPSS: 2.2% chance of exploitation in the next 30 days.
Stored XSS (Cross-Site Scripting) exists in the SolarWinds Orion Platform before before 2020.2.1 on multiple forms and pages. This vulnerability may lead to the Information Disclosure and Escalation of Privileges (takeover of administrator account).
Affected products
- SolarWinds Orion Platform: before 2020.2.1 (fixed in 2020.2.1)
Published 2020-09-17. Last modified 2026-06-17.