Description
A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to execute code with root privileges on an affected system. The vulnerability is due to insufficient input sanitization during user authentication processing. An attacker could exploit this vulnerability by sending a crafted response to the Cisco SD-WAN vManage Software. A successful exploit could allow the attacker to access the software and execute commands they should not be authorized to execute.
Published: 2020-07-16
Score: 8.8 High
EPSS: 39.2% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 13 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Cisco 1100-4g Integrated Services Router 1100-4gltegb Integrated Services Router 1100-4gltena Integrated Services Router 1100-6g Integrated Services Router Sd-wan Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-13T18:20:00.634Z

Reserved: 2019-12-12T00:00:00.000Z

Link: CVE-2020-3387

cve-icon Vulnrichment

Updated: 2024-08-04T07:30:58.197Z

cve-icon NVD

Status : Modified

Published: 2020-07-16T18:15:19.127

Modified: 2024-11-21T05:30:55.833

Link: CVE-2020-3387

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses