VMware SD-WAN Edge contains an unauthenticated command injection vulnerability potentially leading to remote code execution.

A malicious actor with local access to the Edge Router UI during
activation may be able to perform a command injection attack that could
lead to full control of the router.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2024-08-01T22:43:34.263Z

Reserved: 2024-01-08T18:43:03.535Z

Link: CVE-2024-22246

cve-icon Vulnrichment

Updated: 2024-08-01T22:43:34.263Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-02T16:15:07.573

Modified: 2024-11-21T08:55:52.973

Link: CVE-2024-22246

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:01:01Z