← Back to CVE List

CVE-2018-6961

Published: 2018-06-11T22:29Z
Last Modified: 2025-02-12T20:05Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web UI component. This component is disabled by default and should not be enabled on untrusted networks. VeloCloud by VMware will be removing this service from the product in future releases. Successful exploitation of this issue could result in remote code execution. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt