A vulnerability in the batch provisioning feature in Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to overwrite system files as root. The vulnerability is due to lack of input validation of the parameters in BatchFileName and Directory. An attacker could exploit this vulnerability by manipulating the parameters of the batch action file function. Cisco Bug IDs: CSCvd61766.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2017-09-07T21:00:00

Updated: 2024-08-05T15:41:17.522Z

Reserved: 2017-03-09T00:00:00

Link: CVE-2017-6792

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-09-07T21:29:00.847

Modified: 2019-10-09T23:29:17.797

Link: CVE-2017-6792

cve-icon Redhat

No data.