CVE-2020-13912 describes a local privilege escalation vulnerability in SolarWinds Advanced Monitoring Agent versions prior to 10.8.9. An attacker can exploit this by replacing a specific executable file with a malicious one, as the file's permissions allow write access to all users. This vulnerability carries a CVSS score of 7.3 (HIGH), indicating that a local, low-privileged attacker could achieve high impact to confidentiality, integrity, and availability with low attack complexity, though user interaction is required. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 10.8.9CPE matchmatch criteria | cpe:2.3:a:solarwinds:advanced_monitoring_agent:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.