CVE-2024-22247
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
02/04/2024
Last modified:
03/07/2024
Description
VMware SD-WAN Edge contains a missing authentication and protection mechanism vulnerability.<br />
<br />
A malicious actor with physical access to the SD-WAN Edge appliance <br />
during activation can potentially exploit this vulnerability to access <br />
the BIOS configuration. In addition, the malicious actor may be able to <br />
exploit the default boot priority configured.<br />
<br />
Impact
Base Score 3.x
4.80
Severity 3.x
MEDIUM



