Логотип exploitDog
bind:CVE-2024-20320
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-20320

Количество 3

Количество 3

nvd логотип

CVE-2024-20320

почти 2 года назад

A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Series and 5700 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of arguments that are included with the SSH client CLI command. An attacker with low-privileged access to an affected device could exploit this vulnerability by issuing a crafted SSH client command to the CLI. A successful exploit could allow the attacker to elevate privileges to root on the affected device.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4hv7-4c5m-8c4c

почти 2 года назад

A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Series and 5700 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of arguments that are included with the SSH client CLI command. An attacker with low-privileged access to an affected device could exploit this vulnerability by issuing a crafted SSH client command to the CLI. A successful exploit could allow the attacker to elevate privileges to root on the affected device.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2024-01988

почти 2 года назад

Уязвимость SSH-клиента операционной системы Cisco IOS XR, позволяющая нарушителю повысить свои привилегии до уровня root

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-20320

A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Series and 5700 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of arguments that are included with the SSH client CLI command. An attacker with low-privileged access to an affected device could exploit this vulnerability by issuing a crafted SSH client command to the CLI. A successful exploit could allow the attacker to elevate privileges to root on the affected device.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-4hv7-4c5m-8c4c

A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Series and 5700 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of arguments that are included with the SSH client CLI command. An attacker with low-privileged access to an affected device could exploit this vulnerability by issuing a crafted SSH client command to the CLI. A successful exploit could allow the attacker to elevate privileges to root on the affected device.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-01988

Уязвимость SSH-клиента операционной системы Cisco IOS XR, позволяющая нарушителю повысить свои привилегии до уровня root

CVSS3: 7.8
0%
Низкий
почти 2 года назад

Уязвимостей на страницу