Solarwinds has patched a serious vulnerability in its Web Help Desk product that allowed attackers to run arbitrary Hibernate Query Language (HQL) code.
Solarwinds Online Help Desk is a helpdesk ticketing and asset management solution that gives customers a consolidated web interface to manage end user trouble tickets and track the lifecycle of service requests.