Loading HuntDB...

GHSA-xg58-pq9h-2xc7

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all installations. This vulnerability could allow an attacker to spoof the SSH host signature and thereby masquerade as a legitimate Orchestrator
host.

Related CVEs

Key Information

GHSA ID
GHSA-xg58-pq9h-2xc7
Published
August 22, 2023 9:30 PM
Last Modified
April 4, 2024 7:08 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 6, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.