First published: Tue Apr 02 2024(Updated: )
VMware SD-WAN Orchestrator contains an open redirect vulnerability. A malicious actor may be able to redirect a victim to an attacker controlled domain due to improper path handling leading to sensitive information disclosure.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware VeloCloud Orchestrator |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-22248 is considered a moderate severity vulnerability due to its potential for sensitive information disclosure.
To fix CVE-2024-22248, ensure that you update VMware SD-WAN Orchestrator to the latest version provided by VMware.
CVE-2024-22248 is an open redirect vulnerability that could allow attackers to redirect users to malicious sites.
CVE-2024-22248 affects users of VMware SD-WAN Orchestrator versions prior to the security fix.
The impact of CVE-2024-22248 may include sensitive information disclosure if exploited by a malicious actor.