National Cyber Warfare Foundation (NCWF) Forums


CVE-2023-37434


0 user ratings
2023-08-22 20:17:01
milo
CVEs

 - archive -- 
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilities to
    obtain and modify sensitive information in the underlying database potentially leading to the exposure and corruption of sensitive data controlled by the EdgeConnect SD-WAN Orchestrator host.

CVE-2023-37434
https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-37434
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilities to
    obtain and modify sensitive information in the underlying database potentially leading to the exposure and corruption of sensitive data controlled by the EdgeConnect SD-WAN Orchestrator host.

2023-08-22T19:16:38Z

Source: CVEAnnouncements
Source Link: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-37434


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
CVEs



© Copyright 2012 through 2024 - National Cyber War Foundation - All rights reserved worldwide.