CVE-2018-6961 KEV EXPLOIT
8.1
HIGH · CVSS 3.1 · EPSS 86.3% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2022-04-15.
Description
VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web UI component. This component is disabled by default and should not be enabled on untrusted networks. VeloCloud by VMware will be removing this service from the product in future releases. Successful exploitation of this issue could result in remote code execution.
Scoring
| CVSS | 8.1 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 86.25% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-78 |
| On CISA KEV | yes — remediate by 2022-04-15 |
| Public exploit | yes |
| Published | 2018-06-11 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | VMware SD-WAN Edge by VeloCloud Command Injection Vulnerability |
|---|---|
| Added | 2022-03-25 |
| Due | 2022-04-15 |
| Vendor / product | VMware / SD-WAN Edge |
| Ransomware use | none reported |
Affected (1)
| Vendor | Product |
|---|---|
| vmware | nsx sd-wan by velocloud |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | VMware NSX SD-WAN Edge < 3.1.2 - Command Injection | 2018-07-02 |
References
- http://www.securityfocus.com/bid/104185
- http://www.securitytracker.com/id/1041210
- http://www.vmware.com/security/advisories/VMSA-2018-0011.html
- https://www.exploit-db.com/exploits/44959/
- http://www.securityfocus.com/bid/104185
- http://www.securitytracker.com/id/1041210
- http://www.vmware.com/security/advisories/VMSA-2018-0011.html
- https://www.exploit-db.com/exploits/44959/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-6961
→ the Explorer · watch your stack · NVD