Blog | G5 Cyber Security

Silver Peak SD-WAN Bugs Allow for Network Takeover

Silver Peak s Unity Orchestrator, a software-defined WAN (SD-WAN) management platform, suffers from three remote code-execution security bugs that can be chained together to allow network takeover by unauthenticated attackers. The bugs are an authentication bypass, file delete path traversal and an arbitrary SQL query execution, which can be combined in order to execute arbitrary code. The issues are present in versions prior to 8.9+. 8.10+. or 9.0.1+.

Source: https://threatpost.com/silver-peak-sd-wan-bugs-network-takeover/161142/

Exit mobile version