A vulnerability in the web-based management interface of...
High severity
Unreviewed
Published
Jul 24, 2024
to the GitHub Advisory Database
•
Updated Jul 25, 2024
Description
Published by the National Vulnerability Database
Jul 24, 2024
Published to the GitHub Advisory Database
Jul 24, 2024
Last updated
Jul 25, 2024
A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.
References