Silver-peak
Silver-peak Unity Edgeconnect Sd-wan Firmware: vulnerabilidades y CVE
Silver-peak Unity Edgeconnect Sd-wan Firmware tiene 7 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-16105 | Media (4.9) | 1.7% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows ..%2f directory traversal via a rest/json/configdb/download/ URI. |
| CVE-2019-16104 | Media (6.1) | 0.82% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x has reflected XSS via the rest/json/configdb/download/ PATH_INFO. |
| CVE-2019-16103 | Alta (7.2) | 1.8% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows privilege escalation (by administrators) from the menu to a root Bash OS shell via the spsshell feature. |
| CVE-2019-16102 | Crítica (9.8) | 1.5% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x has an SNMP service with a public value for rocommunity and trapcommunity. |
| CVE-2019-16101 | Media (5.3) | 1.5% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows remote attackers to obtain potentially sensitive stack traces by sending incorrect JSON data to the REST API, such as the rest/json/banners URI. |
| CVE-2019-16100 | Alta (7.5) | 1.8% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows remote attackers to trigger a web-interface outage via slow client-side HTTP traffic from a single source. |
| CVE-2019-16099 | Alta (8.8) | 0.61% | — | 8 sept 2019 | Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows CSRF via JSON data to a .swf file. |