Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Authenticated Server-Side Request Forgery (SSRF) Leading to Information Disclosure
Vulnerability Description
A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an attacker to enumerate information about the internal structure of the EdgeConnect SD-WAN Orchestrator host leading to potential disclosure of sensitive information.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N
Vulnerability Type
N/A
Vulnerability Title
Aruba Networks EdgeConnect SD-WAN Orchestrator 代码问题漏洞
Vulnerability Description
Aruba Networks EdgeConnect是美国Aruba Networks公司的一个边缘连接管理平台。 Aruba Networks EdgeConnect SD-WAN Orchestrator 存在安全漏洞,该漏洞源于基于 Web 的管理界面存在服务器端请求伪造漏洞。
CVSS Information
N/A
Vulnerability Type
N/A