Vulnslist

find the latest Cisco vulnerabilities

CVE-2020-26071

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an affected device, which could result in a denial of service (DoS) condition. The vulnerability is due to insufficient input validation for specific commands. An attacker could exploit this vulnerability by including crafted arguments to those specific commands. A successful exploit could allow the attacker to create or overwrite arbitrary files on the affected device, which could result in a DoS condition.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

SeverityHIGH
CVSS8.4
CWECWE-22
KEV
Published
Modified

Related Products

Product Advisory
Cisco vEdge Routers cisco-sa-vsoln-arbfile-gtsEYxns
Cisco SD-WAN cisco-sa-vsoln-arbfile-gtsEYxns
Cisco RV Series Routers cisco-sa-vsoln-arbfile-gtsEYxns
Cisco Nexus Dashboard cisco-sa-vsoln-arbfile-gtsEYxns
Cisco Catalyst SD-WAN Software cisco-sa-vsoln-arbfile-gtsEYxns
Cisco SD-WAN vEdge Router cisco-sa-vsoln-arbfile-gtsEYxns
Cisco SD-WAN vEdge Cloud cisco-sa-vsoln-arbfile-gtsEYxns
Cisco SD-WAN vContainer cisco-sa-vsoln-arbfile-gtsEYxns
Cisco Catalyst SD-WAN Manager cisco-sa-vsoln-arbfile-gtsEYxns
Cisco Catalyst SD-WAN cisco-sa-vsoln-arbfile-gtsEYxns