A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to upload arbitrary files on an affected device. The vulnerability is due to incorrect permission settings in affected DCNM software. An attacker could exploit this vulnerability by uploading specially crafted data to the affected device. A successful exploit could allow the attacker to write arbitrary files on the filesystem and execute code with root privileges on the affected device.
Metrics
Affected Vendors & Products
References
History
Tue, 19 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2019-06-27T03:05:26.301580Z
Updated: 2024-11-19T19:03:59.115Z
Reserved: 2018-12-06T00:00:00
Link: CVE-2019-1620
Vulnrichment
Updated: 2024-08-04T18:20:28.395Z
NVD
Status : Modified
Published: 2019-06-27T03:15:09.480
Modified: 2024-11-21T04:36:56.807
Link: CVE-2019-1620
Redhat
No data.