Webhelpdesk
Vendor:
First CVE: Apr 27, 2020 · Active for 6 years
27
Total CVEs
More Total CVEs than 80% of tracked products
4.5
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 34% of tracked products
18.5%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Webhelpdesk over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 27, 2020
6 years ago
Most Recent CVE
Jun 2, 2026
54 days ago
CVE Severity & Scoring
Webhelpdesk27 CVEs
48%
19%
33%
All CVEs352,719 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (14.8%)
Network23 (85.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low26 (96.3%)
High1 (3.7%)
Unknown0 (0.0%)
User Interaction
None20 (74.1%)
Unknown0 (0.0%)
Required7 (25.9%)
Privileges Required
Low13 (48.1%)
High0 (0.0%)
None14 (51.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (27 CVEs).
27 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-40551CRITICAL SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, which would allow an attacker to r | Jan 28, 2026 | 9.8 | 98 | YES | YES |
CVE-2024-28987CRITICAL The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify da | Aug 21, 2024 | 9.1 | 98 | YES | YES |
CVE-2025-40536CRITICAL SolarWinds Web Help Desk was found to be susceptible to a security control bypass vulnerability that if exploited, could allow an unauthenticated attacker to gain access to certain | Jan 28, 2026 | 9.8 | 97 | YES | YES |
CVE-2024-28986CRITICAL SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on th | Aug 13, 2024 | 9.8 | 97 | YES | YES |
CVE-2025-26399CRITICAL SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserialization remote code execution vulnerability that, if exploited, would allow an attacker | Sep 23, 2025 | 9.8 | 96 | YES | NO |
CVE-2025-40554CRITICAL SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that, if exploited, could allow an attacker to invoke specific actions within Web Hel | Jan 28, 2026 | 9.8 | 78 | NO | YES |
CVE-2025-40552CRITICAL SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that if exploited, would allow a malicious actor to execute actions and methods that | Jan 28, 2026 | 9.8 | 74 | NO | YES |
CVE-2025-40553CRITICAL SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, which would allow an attacker to r | Jan 28, 2026 | 9.8 | 71 | NO | NO |
CVE-2024-28988CRITICAL SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on th | Sep 1, 2025 | 9.8 | 56 | NO | NO |
CVE-2026-28299HIGH SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could cause the Web Help Desk server to crash due to insufficient memor | Jun 2, 2026 | 8.2 | 36 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (27 CVEs).
CISA KEV
5 CVEs
18.5% of CVEs· Bottom 1%
Metasploit
3 CVEs
11.1% of CVEs· Bottom 1%
Nuclei
6 CVEs
22.2% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (27 CVEs).
Media Mentions
Signals from CVEs in this product scope (27 CVEs).
Top CNAs Publishing CVEs For Webhelpdesk
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 12.8.7 | 1 | 9.8 | 88.3% | 1 | 0 |
| 12.8.3 | 3 | 9.6 | 63.5% | 2 | 2 |
| 12.7.8 | 1 | 8.8 | 1.0% | 0 | 0 |
| 12.7.1 | 1 | 7.8 | 1.3% | 0 | 0 |
| 12.7.0 | 7 | 5.6 | 1.5% | 0 | 0 |