A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system. This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system.
2021-03-24T20:15:14.667
2024-11-21T05:44:21.310
Modified
CVSSv3.1: 4.4 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:C/A:C
3.9
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ios_xe | 16.11.1 | Yes |
Operating System | cisco | ios_xe | 16.11.1a | Yes |
Operating System | cisco | ios_xe | 16.11.1b | Yes |
Operating System | cisco | ios_xe | 16.11.1c | Yes |
Operating System | cisco | ios_xe | 16.11.1s | Yes |
Operating System | cisco | ios_xe | 16.11.2 | Yes |
Operating System | cisco | ios_xe | 16.12.1 | Yes |
Operating System | cisco | ios_xe | 16.12.1a | Yes |
Operating System | cisco | ios_xe | 16.12.1c | Yes |
Operating System | cisco | ios_xe | 16.12.1s | Yes |
Operating System | cisco | ios_xe | 16.12.1t | Yes |
Operating System | cisco | ios_xe | 16.12.1w | Yes |
Operating System | cisco | ios_xe | 16.12.1x | Yes |
Operating System | cisco | ios_xe | 16.12.1y | Yes |
Operating System | cisco | ios_xe | 16.12.1z | Yes |
Operating System | cisco | ios_xe | 16.12.1za | Yes |
Operating System | cisco | ios_xe | 16.12.2 | Yes |
Operating System | cisco | ios_xe | 16.12.2a | Yes |
Operating System | cisco | ios_xe | 16.12.2s | Yes |
Operating System | cisco | ios_xe | 16.12.2t | Yes |
Operating System | cisco | ios_xe | 16.12.3 | Yes |
Operating System | cisco | ios_xe | 16.12.3a | Yes |
Operating System | cisco | ios_xe | 16.12.3s | Yes |
Operating System | cisco | ios_xe | 17.2.1 | Yes |
Operating System | cisco | ios_xe | 17.2.1a | Yes |
Operating System | cisco | ios_xe | 17.2.1r | Yes |
Operating System | cisco | ios_xe | 17.2.1v | Yes |