Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2023-20260

A vulnerability in the application CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager could allow an authenticated, local attacker to gain escalated privileges. This vulnerability is due to improper processing of command line arguments to application scripts. An attacker could exploit this vulnerability by issuing a command on the CLI with malicious options. A successful exploit could allow the attacker to gain the escalated privileges of the root user on the underlying operating system.

SeverityMEDIUM
CVSS6.0
CWECWE-284
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Prime Infrastructure cisco-sa-pi-epnm-wkZJeyeq Cisco OpenVuln
Cisco Evolved Programmable Network Manager (EPNM) cisco-sa-pi-epnm-wkZJeyeq Cisco OpenVuln