CVE-2023-37426

EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all installations. This vulnerability could allow an attacker to spoof the SSH host signature and thereby masquerade as a legitimate Orchestrator host.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2023-08-22 19:16

Updated : 2023-08-22 20:10


NVD link : CVE-2023-37426

Mitre link : CVE-2023-37426


JSON object : View

Products Affected

No product.

CWE

No CWE.