A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: hpe
Published: 2024-07-24T14:57:55.556Z
Updated: 2024-08-12T21:07:17.095Z
Reserved: 2024-07-23T15:57:59.918Z
Link: CVE-2024-41914
Vulnrichment
Updated: 2024-08-02T04:46:52.755Z
NVD
Status : Modified
Published: 2024-07-24T15:15:12.437
Modified: 2024-11-21T09:33:16.507
Link: CVE-2024-41914
Redhat
No data.