CVE-2022-20779

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the host to the VM. For more information about these vulnerabilities, see the Details section of this advisory.

SeverityCRITICAL
CVSS9.9
EPSS0.52% EPSS medium
CWECWE-284
KEV
Published
Modified

Public Affected Products

Product Advisory Evidence
Cisco Enterprise NFV Infrastructure Software cisco-sa-NFVIS-MUL-7DySRX9 Cisco CSAF ยท structured affected