First published: Wed Apr 13 2022(Updated: )
Hard-coded credentials allow administrators to access the shell via the SD-WAN CLI
Credit: secure@citrix.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix SD-WAN 110 Firmware | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN 210 | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN 400 | <11.4.1 | |
Citrix SD-WAN 400 | ||
Citrix SD-WAN 410 Firmware | <11.4.1 | |
Citrix | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN 2000 Firmware | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN 5100 Firmware | <11.4.1 | |
Citrix SD-WAN 5100 Firmware | <11.4.1 | |
Citrix SD-WAN 5100 | ||
Citrix SD-WAN 6100 Firmware | <11.4.1 | |
Citrix SD-WAN 6100 Firmware | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | <11.4.1 | |
Citrix SD-WAN | ||
Citrix SD-WAN Center | <11.4.3 | |
Citrix SD-WAN Orchestrator | <13.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27506 is a vulnerability that allows administrators to access the shell via the SD-WAN CLI using hard-coded credentials.
CVE-2022-27506 has a severity rating of medium.
CVE-2022-27506 affects Citrix SD-WAN firmware versions up to 11.4.1.
To fix CVE-2022-27506, Citrix recommends upgrading to a version higher than 11.4.1.
You can find more information about CVE-2022-27506 at the following link: [https://support.citrix.com/article/CTX370550](https://support.citrix.com/article/CTX370550)