Cisco
Cisco Vsmart Controller: vulnerabilidades y CVE
Cisco Vsmart Controller tiene 19 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE19
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-1528 | Alta (7.8) | 0.25% | — | 4 jun 2021 | A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges on an affected system. This vulnerability exists because the affected software does not… |
| CVE-2020-3379 | Alta (7.8) | 0.34% | — | 16 jul 2020 | A vulnerability in Cisco SD-WAN Solution Software could allow an authenticated, local attacker to elevate privileges to Administrator on the underlying operating system. The vulnerability is due to insufficient input… |
| CVE-2020-3351 | Alta (8.6) | 1.4% | — | 16 jul 2020 | A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper validation of fields in Cisco SD-WAN… |
| CVE-2019-1651 | Alta (8.8) | 4.9% | — | 24 ene 2019 | A vulnerability in the vContainer of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to cause a denial of service (DoS) condition and execute arbitrary code as the root user. The vulnerability is… |
| CVE-2019-1650 | Alta (8.8) | 3.5% | — | 24 ene 2019 | A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper… |
| CVE-2019-1648 | Alta (7.8) | 0.37% | — | 24 ene 2019 | A vulnerability in the user group configuration of the Cisco SD-WAN Solution could allow an authenticated, local attacker to gain elevated privileges on an affected device. The vulnerability is due to a failure to… |
| CVE-2019-1647 | Alta (8) | 0.81% | — | 24 ene 2019 | A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, adjacent attacker to bypass authentication and have direct unauthorized access to other vSmart containers. The vulnerability is due to an… |
| CVE-2019-1646 | Alta (7.8) | 0.45% | — | 24 ene 2019 | A vulnerability in the local CLI of the Cisco SD-WAN Solution could allow an authenticated, local attacker to escalate privileges and modify device configuration files. The vulnerability exists because user input is not… |
| CVE-2018-0433 | Alta (7.8) | 0.45% | — | 5 oct 2018 | A vulnerability in the command-line interface (CLI) in the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due… |
| CVE-2018-0351 | Alta (7.8) | 0.47% | — | 18 jul 2018 | A vulnerability in the command-line tcpdump utility in the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due… |
| CVE-2018-0350 | Alta (8.8) | 3.0% | — | 18 jul 2018 | A vulnerability in the VPN subsystem configuration in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due… |
| CVE-2018-0349 | Crítica (9.8) | 3.0% | — | 18 jul 2018 | A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper… |
| CVE-2018-0348 | Alta (7.2) | 2.9% | — | 18 jul 2018 | A vulnerability in the CLI of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient input… |
| CVE-2018-0347 | Alta (7.8) | 0.47% | — | 18 jul 2018 | A vulnerability in the Zero Touch Provisioning (ZTP) subsystem of the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The… |
| CVE-2018-0346 | Alta (7.5) | 2.0% | — | 18 jul 2018 | A vulnerability in the Zero Touch Provisioning service of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability… |
| CVE-2018-0345 | Alta (8.8) | 3.0% | — | 18 jul 2018 | A vulnerability in the configuration and management database of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary commands with the privileges of the vmanage user in the… |
| CVE-2018-0344 | Alta (7.2) | 2.0% | — | 18 jul 2018 | A vulnerability in the vManage dashboard for the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject and execute arbitrary commands with vmanage user… |
| CVE-2018-0343 | Alta (8.8) | 1.9% | — | 18 jul 2018 | A vulnerability in the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary code with vmanage user privileges or cause a denial of service… |
| CVE-2018-0342 | Media (6.7) | 0.45% | — | 18 jul 2018 | A vulnerability in the configuration and monitoring service of the Cisco SD-WAN Solution could allow an authenticated, local attacker to execute arbitrary code with root privileges or cause a denial of service (DoS)… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.