CVE-2015-7839
CVE-2015-7839 is a high-severity vulnerability in Solarwinds Log And Event Manager with a CVSS 2.0 base score of 7.5. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-77.
Key facts
- Severity: High (CVSS 2.0 base score 7.5)
- EPSS exploit prediction: 7% (94th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-77
- Affected product: Solarwinds Log And Event Manager
- Published:
- Last modified:
Description
SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.
Frequently asked questions
- What is CVE-2015-7839?
- SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.
- How severe is CVE-2015-7839?
- CVE-2015-7839 has a CVSS 2.0 base score of 7.5, rated high severity.
- Is CVE-2015-7839 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 7% (94th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2015-7839?
- CVE-2015-7839 affects Solarwinds Log And Event Manager. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2015-7839?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround. Given its high severity, prioritise patching exposed systems.
- When was CVE-2015-7839 published?
- CVE-2015-7839 was published on 2015-10-15 and last updated on 2026-06-17.
References
Affected products (1)
- cpe:2.3:a:solarwinds:log_and_event_manager:*:*:*:*:*:*:*:*
More vulnerabilities in Solarwinds Log And Event Manager
- CVE-2017-5199 — High (CVSS 8.8): The editbanner feature in SolarWinds LEM (aka SIEM) through 6.3.1 allows remote authenticated users to execute…
- CVE-2017-5198 — High (CVSS 8.8): SolarWinds LEM (aka SIEM) before 6.3.1 has an incorrect sudo configuration, which allows local users to obtain root…
- CVE-2015-7840 — High (CVSS 7.5): The command line management console (CMC) in SolarWinds Log and Event Manager (LEM) before 6.2.0 allows remote…
- CVE-2014-5504 — High (CVSS 7.5): SolarWinds Log and Event Manager before 6.0 uses "static" credentials, which makes it easier for remote attackers to…
All CVEs affecting Solarwinds Log And Event Manager →
Other CWE-77 (Command Injection) vulnerabilities
- CVE-2026-105484 — Critical (CVSS 10.0): A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230116. The impacted element is the…
- CVE-2026-105134 — Critical (CVSS 10.0): A flaw has been found in Ahsay AhsayCBS up to 10.3.2. This vulnerability affects unknown code of the file…
- CVE-2026-102240 — Critical (CVSS 10.0): A vulnerability was found in Netcore NAP930 0.1.241010.141410. This affects the function eval of the file…
- CVE-2026-101076 — Critical (CVSS 10.0): A vulnerability was detected in Netcore NR289-GE 1.4.5102. This affects the function system of the file…
- CVE-2026-101075 — Critical (CVSS 10.0): A security vulnerability has been detected in Netcore NR289-GE 1.4.5102. The impacted element is the function system of…
- CVE-2026-101072 — Critical (CVSS 10.0): A vulnerability was identified in Netcore NR289-GE 1.4.5102. This issue affects the function system of the file…