Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Shared SSH Static Host Keys in EdgeConnect SD-WAN Orchestrator
Vulnerability Description
EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all installations. This vulnerability could allow an attacker to spoof the SSH host signature and thereby masquerade as a legitimate Orchestrator host.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Vulnerability Type
N/A
Vulnerability Title
Aruba Networks EdgeConnect SD-WAN Orchestrator 信任管理问题漏洞
Vulnerability Description
Aruba Networks EdgeConnect是美国Aruba Networks公司的一个边缘连接管理平台。 Aruba Networks EdgeConnect SD-WAN Orchestrator 存在安全漏洞,该漏洞源于所有实例共享静态 SSH 主机密钥。
CVSS Information
N/A
Vulnerability Type
N/A