SolarWinds addressed a critical remote code execution vulnerability, CVE-2024-28991, in Access Rights Manager.The vulnerability, discovered by Piotr Bazydlo, allows authenticated users to execute arbitrary code.SolarWinds also fixed a hardcoded credential vulnerability, CVE-2024-28990, in Access Rights Manager.The company released Access Rights Manager (ARM) 2024.3.1 to address these vulnerabilities.