Skip to content

CVE-2020-10148

CVE

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
June 8, 2026
Last Seen
June 17, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

The SolarWinds Orion API is vulnerable to an authentication bypass, allowing remote attackers to execute API commands without authentication. This vulnerability, identified as CVE-2020-10148, can be exploited by appending specific parameters to the Request.PathInfo portion of a URI request. Affected...

Recent cybersecurity reports detail the exploitation of software vulnerabilities in client applications, particularly targeting web browsers and Microsoft Office. Adversaries utilize techniques such as Drive-by Compromise and Phishing to execute malicious code, often without user interaction. Notabl...

Public Exploits

Checking GitHub for proof-of-concept code…