imPC@ndo IT

Tracker / CVE-2022-27506

CVE-2022-27506

Low 2.7

Hard-coded credentials allow administrators to access the shell via the SD-WAN CLI

Affected products and versions

citrix sd-wan_1000_firmware · … → 11.4.1
citrix sd-wan_1100_firmware · … → 11.4.1
citrix sd-wan_110_firmware · … → 11.4.1
citrix sd-wan_2000_firmware · … → 11.4.1
citrix sd-wan_2100_firmware · … → 11.4.1
citrix sd-wan_210_firmware · … → 11.4.1
citrix sd-wan_4000_firmware · … → 11.4.1
citrix sd-wan_400_firmware · … → 11.4.1
citrix sd-wan_4100_firmware · … → 11.4.1
citrix sd-wan_410_firmware · … → 11.4.1
citrix sd-wan_5100_firmware · … → 11.4.1
citrix sd-wan_6100_firmware · … → 11.4.1
citrix sd-wan_center_management_console · … → 11.4.3
citrix sd-wan_orchestrator · … → 13.2.1

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References