Description
A vulnerability within the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victims browser in the context of the affected interface.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19988 | A vulnerability within the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victims browser in the context of the affected interface. |
References
History
No history.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2024-08-01T22:43:34.992Z
Reserved: 2024-01-10T15:24:39.967Z
Link: CVE-2024-22444
Updated: 2024-08-01T22:43:34.992Z
Status : Modified
Published: 2024-07-24T16:15:06.220
Modified: 2024-11-21T08:56:18.273
Link: CVE-2024-22444
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD