漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Authenticated Server-Side prototype pollution Leading to Information Disclosure
Vulnerability Description
A vulnerability in the web-based management interface of HPE Aruba Networking EdgeConnect SD-WAN gateway could allow an authenticated remote attacker to conduct a server-side prototype pollution attack. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
EdgeConnect SD-WAN 安全漏洞
Vulnerability Description
EdgeConnect SD-WAN是美国HPE的为零信任和 SASE 提供安全的网络基础。它包括一流的 SD-WAN 和下一代防火墙,可提供无与伦比的体验质量和高级安全性。 HPE Aruba Networking EdgeConnect SD-WAN Gateway 存在安全漏洞,该漏洞源于基于 Web 的管理界面中存在一个漏洞,允许经过身份验证的远程攻击者进行服务器端原型污染攻击。
CVSS Information
N/A
Vulnerability Type
N/A