Vulnerabilities > Silver Peak

DATE CVE VULNERABILITY TITLE RISK
2019-09-08 CVE-2019-16101 Information Exposure vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows remote attackers to obtain potentially sensitive stack traces by sending incorrect JSON data to the REST API, such as the rest/json/banners URI.
network
low complexity
silver-peak CWE-200
5.0
2019-09-08 CVE-2019-16100 Unspecified vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows remote attackers to trigger a web-interface outage via slow client-side HTTP traffic from a single source.
network
low complexity
silver-peak
5.0
2019-09-08 CVE-2019-16099 Cross-Site Request Forgery (CSRF) vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows CSRF via JSON data to a .swf file.
6.8
2014-07-28 CVE-2014-2975 Cross-Site Scripting vulnerability in Silver-Peak VX 6.2.2.047968/6.2.4
Cross-site scripting (XSS) vulnerability in php/user_account.php in Silver Peak VX before 6.2.4 allows remote attackers to inject arbitrary web script or HTML via the user_id parameter.
4.3
2014-07-28 CVE-2014-2974 Cross-Site Request Forgery (CSRF) vulnerability in Silver-Peak VX 6.2.2.047968/6.2.4
Cross-site request forgery (CSRF) vulnerability in php/user_account.php in Silver Peak VX through 6.2.4 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
6.8