Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-20726


Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary commands into the underlying host operating system, execute arbitrary code on the underlying host operating system, install applications without being authenticated, or conduct a cross-site scripting (XSS) attack against a user of the affected software. For more information about these vulnerabilities, see the Details section of this advisory.


Published

2022-04-15T15:15:13.560

Last Modified

2024-11-21T06:43:25.447

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

2.9

Weaknesses
  • Type: Secondary
    CWE-22
  • Type: Primary
    CWE-755

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cisco cgr1000_compute_module * Yes
Application cisco ic3000_industrial_compute_gateway * Yes
Operating System cisco ios * Yes
Operating System cisco ios 15.2\(5\)e1 Yes
Operating System cisco ios 15.2\(5\)e2c Yes
Operating System cisco ios 15.2\(6\)e0a Yes
Operating System cisco ios 15.2\(6\)e1 Yes
Operating System cisco ios 15.2\(6\)e2a Yes
Operating System cisco ios 15.2\(7\)e Yes
Operating System cisco ios 15.2\(7\)e0b Yes
Operating System cisco ios 15.2\(7\)e0s Yes
Operating System cisco ios 15.6\(1\)t1 Yes
Operating System cisco ios 15.6\(1\)t2 Yes
Operating System cisco ios 15.6\(1\)t3 Yes
Operating System cisco ios 15.6\(2\)t Yes
Operating System cisco ios 15.6\(2\)t1 Yes
Operating System cisco ios 15.6\(2\)t2 Yes
Operating System cisco ios 15.6\(2\)t3 Yes
Operating System cisco ios 15.6\(3\)m Yes
Operating System cisco ios 15.6\(3\)m0a Yes
Operating System cisco ios 15.6\(3\)m1 Yes
Operating System cisco ios 15.6\(3\)m1b Yes
Operating System cisco ios 15.6\(3\)m2 Yes
Operating System cisco ios 15.6\(3\)m3 Yes
Operating System cisco ios 15.6\(3\)m3a Yes
Operating System cisco ios 15.6\(3\)m4 Yes
Operating System cisco ios 15.6\(3\)m5 Yes
Operating System cisco ios 15.6\(3\)m6 Yes
Operating System cisco ios 15.6\(3\)m6a Yes
Operating System cisco ios 15.6\(3\)m6b Yes
Operating System cisco ios 15.6\(3\)m7 Yes
Operating System cisco ios 15.6\(3\)m8 Yes
Operating System cisco ios 15.7\(3\)m Yes
Operating System cisco ios 15.7\(3\)m0a Yes
Operating System cisco ios 15.7\(3\)m1 Yes
Operating System cisco ios 15.7\(3\)m2 Yes
Operating System cisco ios 15.7\(3\)m3 Yes
Operating System cisco ios 15.7\(3\)m4 Yes
Operating System cisco ios 15.7\(3\)m4a Yes
Operating System cisco ios 15.7\(3\)m4b Yes
Operating System cisco ios 15.7\(3\)m5 Yes
Operating System cisco ios 15.7\(3\)m6 Yes
Operating System cisco ios 15.8\(3\)m Yes
Operating System cisco ios 15.8\(3\)m0a Yes
Operating System cisco ios 15.8\(3\)m1 Yes
Operating System cisco ios 15.8\(3\)m2 Yes
Operating System cisco ios 15.8\(3\)m2a Yes
Operating System cisco ios 15.8\(3\)m3 Yes
Operating System cisco ios 15.8\(3\)m4 Yes
Operating System cisco ios 15.8\(3\)m5 Yes
Operating System cisco ios 15.8\(3\)m6 Yes
Operating System cisco ios 15.8\(3\)m7 Yes
Operating System cisco ios 15.9\(3\)m Yes
Operating System cisco ios 15.9\(3\)m1 Yes
Operating System cisco ios 15.9\(3\)m2 Yes
Operating System cisco ios 15.9\(3\)m2a Yes
Operating System cisco ios 15.9\(3\)m3 Yes
Operating System cisco ios 15.9\(3\)m4 Yes
Operating System cisco ios 15.9\(3\)m4a Yes

References