Cisco Security Advisory - Cisco SD-WAN Software Privilege Escalation Vulnerabilities

Started by Netwörkheäd, October 08, 2022, 06:28:08 PM

Previous topic - Next topic

Netwörkheäd

Cisco SD-WAN Software Privilege Escalation Vulnerabilities

Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges.


These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit these vulnerabilities by running a malicious command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user.


Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.


This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF


     
         
Security Impact Rating:  High
   
   
       
CVE: CVE-2022-20775,CVE-2022-20818
Source: Cisco SD-WAN Software Privilege Escalation Vulnerabilities
Let's not argue. Let's network!