Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.00111.
Exploitation none
Automatable no
Technical Impact total
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Cisco
Subscribe
|
1100-4g Integrated Services Router
Subscribe
1100-4p Integrated Services Router
Subscribe
1100-6g Integrated Services Router
Subscribe
1100-8p Integrated Services Router
Subscribe
1100 Integrated Services Router
Subscribe
1101-4p Integrated Services Router
Subscribe
1101 Integrated Services Router
Subscribe
1109-2p Integrated Services Router
Subscribe
1109-4p Integrated Services Router
Subscribe
1109 Integrated Services Router
Subscribe
1111x-8p Integrated Services Router
Subscribe
1111x Integrated Services Router
Subscribe
111x Integrated Services Router
Subscribe
1120 Integrated Services Router
Subscribe
1131 Integrated Services Router
Subscribe
1160 Integrated Services Router
Subscribe
4000 Integrated Services Router
Subscribe
4221 Integrated Services Router
Subscribe
4321\/k9-rf Integrated Services Router
Subscribe
4321\/k9-ws Integrated Services Router
Subscribe
4321\/k9 Integrated Services Router
Subscribe
4321 Integrated Services Router
Subscribe
4331\/k9-rf Integrated Services Router
Subscribe
4331\/k9-ws Integrated Services Router
Subscribe
4331\/k9 Integrated Services Router
Subscribe
4331 Integrated Services Router
Subscribe
4351\/k9-rf Integrated Services Router
Subscribe
4351\/k9-ws Integrated Services Router
Subscribe
4351\/k9 Integrated Services Router
Subscribe
4351 Integrated Services Router
Subscribe
4431 Integrated Services Router
Subscribe
4451-x Integrated Services Router
Subscribe
4451 Integrated Services Router
Subscribe
4461 Integrated Services Router
Subscribe
8101-32fh
Subscribe
8101-32h
Subscribe
8102-64h
Subscribe
8201
Subscribe
8201-32fh
Subscribe
8202
Subscribe
8804
Subscribe
8808
Subscribe
8812
Subscribe
8818
Subscribe
8831
Subscribe
Asr 1000
Subscribe
Asr 1000-x
Subscribe
Asr 1001
Subscribe
Asr 1001-hx
Subscribe
Asr 1001-hx R
Subscribe
Asr 1001-x
Subscribe
Asr 1001-x R
Subscribe
Asr 1002
Subscribe
Asr 1002-hx
Subscribe
Asr 1002-hx R
Subscribe
Asr 1002-x
Subscribe
Asr 1002-x R
Subscribe
Asr 1004
Subscribe
Asr 1006
Subscribe
Asr 1006-x
Subscribe
Asr 1009-x
Subscribe
Asr 1013
Subscribe
Asr 1023
Subscribe
Catalyst 8000v Edge
Subscribe
Catalyst 8200
Subscribe
Catalyst 8300
Subscribe
Catalyst 8300-1n1s-4t2x
Subscribe
Catalyst 8300-1n1s-6t
Subscribe
Catalyst 8300-2n2s-4t2x
Subscribe
Catalyst 8300-2n2s-6t
Subscribe
Catalyst 8500
Subscribe
Catalyst 8500-4qc
Subscribe
Catalyst 8500l
Subscribe
Catalyst 8510csr
Subscribe
Catalyst 8510msr
Subscribe
Catalyst 8540csr
Subscribe
Catalyst 8540msr
Subscribe
Catalyst Cg418-e
Subscribe
Catalyst Cg522-e
Subscribe
Catalyst Sd-wan Manager
Subscribe
Sd-wan
Subscribe
Sd-wan Vbond Orchestrator
Subscribe
Sd-wan Vsmart Controller
Subscribe
|
Configuration 1 [-]
|
Configuration 2 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-26025 | Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit these vulnerabilities by running a malicious command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 06 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-06T16:04:36.905Z
Reserved: 2021-11-02T00:00:00
Link: CVE-2022-20775
Updated: 2024-08-03T02:24:49.634Z
Status : Modified
Published: 2022-09-30T19:15:11.467
Modified: 2024-11-21T06:43:31.933
Link: CVE-2022-20775
No data.
OpenCVE Enrichment
No data.
EUVD