Vulnerability CVE-2023-37425


Published: 2023-08-22

Description:
A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.

 References:
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-012.txt

Copyright 2026, cxsecurity.com

 

Back to Top