5.4
CVSSv3

CVE-2023-37422

Published: 22/08/2023 Updated: 29/08/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an malicious user to execute arbitrary script code in a victim's browser in the context of the affected interface.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

arubanetworks edgeconnect sd-wan orchestrator 9.3.0

arubanetworks edgeconnect sd-wan orchestrator