
CISA Warns of SolarWinds Web Help Desk RCE Vulnerability Exploited in Attacks
An urgent warning regarding a critical remote code execution (RCE) vulnerability in SolarWinds Web Help Desk. The vulnerability, tracked as CVE-2025-40551, exploits unsafe deserialization of untrusted data and could allow attackers to execute arbitrary commands on affected systems without requiring authentication. CVE-2025-40551 is a deserialization vulnerability classified under CWE-502 (Deserialization of Untrusted Data). The flaw […] The post CISA Warns of SolarWinds Web Help Desk RCE Vulnerability Exploited in Attacks appeared first on Cyber Security News.