First published: Fri Nov 17 2017(Updated: )
VMware NSX Edge (6.2.x before 6.2.9 and 6.3.x before 6.3.5) contains a moderate Cross-Site Scripting (XSS) issue which may lead to information disclosure.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware NSX Edge | =6.2.0 | |
VMware NSX Edge | =6.2.1 | |
VMware NSX Edge | =6.2.2 | |
VMware NSX Edge | =6.2.3 | |
VMware NSX Edge | =6.2.4 | |
VMware NSX Edge | =6.2.5 | |
VMware NSX Edge | =6.2.6 | |
VMware NSX Edge | =6.2.7 | |
VMware NSX Edge | =6.2.8 | |
VMware NSX Edge | =6.3.0 | |
VMware NSX Edge | =6.3.1 | |
VMware NSX Edge | =6.3.2 | |
VMware NSX Edge | =6.3.3 | |
VMware NSX Edge | =6.3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-4929 has a moderate severity rating due to the potential for information disclosure through Cross-Site Scripting (XSS).
To mitigate CVE-2017-4929, upgrade VMware NSX Edge to version 6.2.9 or 6.3.5 or later.
CVE-2017-4929 affects VMware NSX Edge versions 6.2.0 through 6.2.8 and 6.3.0 through 6.3.4.
CVE-2017-4929 is classified as a Cross-Site Scripting (XSS) vulnerability.
Yes, CVE-2017-4929 could potentially lead to information disclosure, which may assist in further attacks.