First published: Sun Sep 08 2019(Updated: )
Silver Peak EdgeConnect SD-WAN before 8.1.7.x has reflected XSS via the rest/json/configdb/download/ PATH_INFO.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Silver-peak Unity Edgeconnect Sd-wan Firmware | =8.1.4.9_65644 | |
Silver-peak Unity Edgeconnect Sd-wan |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-16104 is a vulnerability in Silver Peak EdgeConnect SD-WAN before 8.1.7.x that allows for reflected XSS attacks via the rest/json/configdb/download/ PATH_INFO.
CVE-2019-16104 has a severity keyword of 'medium' and a severity value of 6.1 on the CVSS scale.
Silver Peak EdgeConnect SD-WAN firmware versions before 8.1.7.x, specifically version 8.1.4.9_65644, are affected by CVE-2019-16104.
The Common Weakness Enumeration (CWE) ID for CVE-2019-16104 is CWE-79.
No, Silver Peak Unity EdgeConnect SD-WAN is not vulnerable to CVE-2019-16104.