When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.

A critical vulnerability plaguing a SolarWinds product is being actively exploited to remotely runmalicious codeon flawed servers.

Since the patch is available, users are advised to apply it immediately and thus secure their endpoints.

Padlock against circuit board/cybersecurity background

The vulnerability is tracked as CVE-2024-28986 and carries a severity score of 9.8 (critical).

It offers features such as ticketing management, asset management, change management, and knowledge base integration.

“WHD 12.8.3 Hotfix 1 should not be applied if SAML Single Sign-On (SSO) is utilized.

A new patch will be available shortly to address this problem.”

Before applying the fix, users should upgrade their servers to 12.8.3.1813.

ViaBleepingComputer

More from TechRadar Pro