5.3
CVSSv3

CVE-2023-37440

Published: 22/08/2023 Updated: 29/08/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote malicious user to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an malicious user to enumerate information about the internal     structure of the EdgeConnect SD-WAN Orchestrator host leading to potential disclosure of sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

arubanetworks edgeconnect sd-wan orchestrator