CVE-2022-47508
Disable NTLM: SAM 2022.4
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.5EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Feb 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for data via IP address this prevented us from utilizing Kerberos.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
SolarWinds · Server & Application Monitor (SAM)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →