The vulnerability in SolarWinds Pingdom can be described as a failure to invalidate user session upon password or email address change. When running multiple active sessions in separate browser windows, it was observed a password or email address change could be changed without terminating the user session. This issue has been resolved on September 13, 2021.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21857 | The vulnerability in SolarWinds Pingdom can be described as a failure to invalidate user session upon password or email address change. When running multiple active sessions in separate browser windows, it was observed a password or email address change could be changed without terminating the user session. This issue has been resolved on September 13, 2021. |
Fixes
Solution
This Vulnerability have been fixed on September 13, 2021
Workaround
No workaround given by the vendor.
References
History
Tue, 24 Feb 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Session Management Vulnerability | Session Management Vulnerability |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SolarWinds
Published:
Updated: 2024-08-04T00:33:51.181Z
Reserved: 2021-06-22T00:00:00.000Z
Link: CVE-2021-35214
No data.
Status : Modified
Published: 2021-10-12T16:15:07.370
Modified: 2024-11-21T06:12:04.480
Link: CVE-2021-35214
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD