A vulnerability in the CLI interface of Cisco SD-WAN...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Oct 25, 2023
Description
Published by the National Vulnerability Database
Jul 22, 2021
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Oct 25, 2023
A vulnerability in the CLI interface of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read arbitrary files on the underlying file system of an affected system. This vulnerability exists because access to sensitive information on an affected system is not sufficiently controlled. An attacker could exploit this vulnerability by gaining unauthorized access to sensitive information on an affected system. A successful exploit could allow the attacker to create forged authentication requests and gain unauthorized access to the web UI of an affected system.
References