Skip to main content

Vendor/product archive

silver-peak / unity_orchestrator CVEs

Beta · best-effort

6 CVEs tagged to silver-peak / unity_orchestrator0 Critical, 0 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2020-12147

Published Nov 5, 2020

In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-12146

Published Nov 5, 2020

In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-12145

Published Nov 5, 2020

Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+ uses HTTP headers to authenticate REST API calls from localhost. This makes it possible to log in to…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1