← Back to browse · API

CVE-2018-6961

Severity
HIGH
CVSS
8.1
EPSS
0.86431
Risk score
87.65
CISA KEV
Yes
PoC
No
Published
2022-03-25
Modified
2022-03-25
First seen
2026-08-07
Aliases
EUVD-2018-18705, GHSA-RVJQ-QP5F-GVX6
Products
VMware:NSX SD-WAN by VeloCloud prior to version 3.1.0, VMware:SD-WAN Edge
Sources
euvd EUVD-2018-18705
cisa.gov CVE-2018-6961

Description

VMware SD-WAN Edge by VeloCloud contains a command injection vulnerability in the local web UI component. Successful exploitation of this issue could result in remote code execution.

References