CVE-2022-20777

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the host to the VM. For more information about these vulnerabilities, see the Details section of this advisory.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityCRITICAL
CVSS9.9
EPSS3.58% EPSS medium
CWECWE-284
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Enterprise NFV Infrastructure Software cisco-sa-NFVIS-MUL-7DySRX9 structured affected CSAF product_status