SECURITY·중요도 8·2026. 09. 19.·The Hacker News

SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE

── KO ──────────────────

SolarWinds가 Access Rights Manager의 원격 코드 실행 취약점을 수정했습니다.

SolarWinds는 Access Rights Manager(ARM)에서 발견된 높은 심각도의 보안 취약점을 수정하는 업데이트를 발표했습니다. 이 취약점(CVE-2026-28326)은 인증되지 않은 원격 코드 실행을 가능하게 하며, CVSS 점수는 8.8로 계산되었습니다. 이번 수정 사항은 Access Rights Manager 2026.2 및 이전 버전 영향을 받습니다.


── EN ──────────────────

SolarWinds patches a high-severity RCE vulnerability in Access Rights Manager.

SolarWinds has released security updates addressing a high-severity vulnerability in Access Rights Manager (ARM). The flaw, tracked as CVE-2026-28326, could lead to unauthenticated remote code execution and has a CVSS score of 8.8. The issue impacts all versions of Access Rights Manager 2026.2 and prior.

원문 보기 →목록으로