This page lists publicly disclosed CVE vulnerabilities affecting solarwinds server_and_application_monitor (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2022-47508 | Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for data via IP address this prevented us from utilizing Kerberos. | [email protected] | 7.5 | 0.75% | 2023-02-15 | 2026-06-17 |
| CVE-2015-1501 | The factory.loadExtensionFactory function in TSUnicodeGraphEditorControl in SolarWinds Server and Application Monitor (SAM) allow remote attackers to execute arbitrary code via a UNC path to a crafted binary. | [email protected] | 6.8 | 7.05% | 2015-02-16 | 2026-06-16 |
| CVE-2015-1500 | Multiple stack-based buffer overflows in the TSUnicodeGraphEditorControl in SolarWinds Server and Application Monitor (SAM) allow remote attackers to execute arbitrary code via unspecified vectors to (1) graphManager.load or (2) factory.load. | [email protected] | 6.8 | 8.16% | 2015-02-16 | 2026-06-16 |