A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges.
This vulnerability is due to insecure file permissions. An attacker could exploit this vulnerability by persuading support to update settings which call the insecure script. A successful exploit could allow the attacker to take complete control of the affected device.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Nov 2024 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2023-01-19T01:37:06.676Z
Updated: 2024-11-21T21:40:09.910Z
Reserved: 2022-10-27T18:47:50.317Z
Link: CVE-2023-20044
Vulnrichment
Updated: 2024-08-02T08:57:35.896Z
NVD
Status : Modified
Published: 2023-01-20T07:15:16.370
Modified: 2024-11-21T07:40:25.490
Link: CVE-2023-20044
Redhat
No data.