Description
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system of an affected system. This vulnerability is due to insufficient validation of the user-supplied input parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content in any arbitrary files that reside on the underlying host file system.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-6979 | A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system of an affected system. This vulnerability is due to insufficient validation of the user-supplied input parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content in any arbitrary files that reside on the underlying host file system. |
References
History
Sat, 09 Nov 2024 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Cisco
Subscribe
Catalyst Sd-wan Manager
Subscribe
Sd-wan Vbond Orchestrator
Subscribe
Sd-wan Vmanage
Subscribe
Vedge-100b
Subscribe
Vedge-100b Firmware
Subscribe
Vedge 100
Subscribe
Vedge 1000
Subscribe
Vedge 1000 Firmware
Subscribe
Vedge 100 Firmware
Subscribe
Vedge 100b
Subscribe
Vedge 100b Firmware
Subscribe
Vedge 100m
Subscribe
Vedge 100m Firmware
Subscribe
Vedge 100wm
Subscribe
Vedge 100wm Firmware
Subscribe
Vedge 2000
Subscribe
Vedge 2000 Firmware
Subscribe
Vedge 5000
Subscribe
Vedge 5000 Firmware
Subscribe
Vedge Cloud
Subscribe
Vedge Cloud Firmware
Subscribe
Vsmart Controller
Subscribe
Vsmart Controller Firmware
Subscribe
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-08T23:18:51.250Z
Reserved: 2020-11-13T00:00:00.000Z
Link: CVE-2021-1512
Updated: 2024-08-03T16:11:17.770Z
Status : Modified
Published: 2021-05-06T13:15:10.817
Modified: 2024-11-21T05:44:31.073
Link: CVE-2021-1512
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD