A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, local attacker with valid administrator-level credentials to elevate privileges and execute arbitrary commands on the underlying operating system as root. The vulnerability is due to insufficient restrictions during the execution of an affected CLI command. An attacker could exploit this vulnerability by leveraging the insufficient restrictions during the execution of an affected command. A successful exploit could allow the attacker to elevate privileges and execute arbitrary commands on the underlying operating system as root.
History

Wed, 20 Nov 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2019-08-08T07:35:14.116452Z

Updated: 2024-11-20T17:13:19.068Z

Reserved: 2018-12-06T00:00:00

Link: CVE-2019-1972

cve-icon Vulnrichment

Updated: 2024-08-04T18:35:52.239Z

cve-icon NVD

Status : Analyzed

Published: 2019-08-08T08:15:13.070

Modified: 2020-10-16T14:44:43.417

Link: CVE-2019-1972

cve-icon Redhat

No data.