VMware SD-WAN Edge CVE-2018-6961 Command Injection Vulnerability
BID:104185
CVE-2018-6961 |Info
VMware SD-WAN Edge CVE-2018-6961 Command Injection Vulnerability
| Bugtraq ID: | 104185 |
| Class: | Unknown |
| CVE: |
CVE-2018-6961 |
| Remote: | Yes |
| Local: | No |
| Published: | May 15 2018 12:00AM |
| Updated: | May 15 2018 12:00AM |
| Credit: | Brian Sullivan from Tevora |
| Vulnerable: |
VMWare SD-WAN Edge 3.0 VMWare SD-WAN Edge 2.0 |
| Not Vulnerable: |
VMWare SD-WAN Edge 3.1 |
Discussion
VMware SD-WAN Edge CVE-2018-6961 Command Injection Vulnerability
VMware SD-WAN Edge is prone to a remote command-injection vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary code in the context of the affected application. Failed exploit attempts may cause a denial-of-service condition.
VMware SD-WAN Edge 2.x and 3.x are vulnerable.
VMware SD-WAN Edge is prone to a remote command-injection vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary code in the context of the affected application. Failed exploit attempts may cause a denial-of-service condition.
VMware SD-WAN Edge 2.x and 3.x are vulnerable.
Solution / Fix
VMware SD-WAN Edge CVE-2018-6961 Command Injection Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
VMware SD-WAN Edge CVE-2018-6961 Command Injection Vulnerability
References:
References: