AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-28323.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSAwaiting NVD dataModified Sep 03, 2026

Disclosure summary

SolarWinds Web Help Desk treated SAML signature verification as optional and skipped every other validation the spec requires. Bishop Fox confirmed the full exploit end to end: one

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

bishopfox.com · RSS-0dae5142e47195f32a26fb4f4b9058e3d75

Open original source · Updated Sep 03, 2026

Signature Optional - Analysis of CVE-2026-28323

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2026-09-03T09:00:00-04:00
MODIFIED 2026-09-03T09:00:00-04:00
INGESTED 2026-10-08T12:05:24-04:00