CVE-2020-3375: Cisco SD-WAN Solution Software Buffer Overflow Vulnerability
A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to gain access to information that they are not authorized to access, make changes to the system that they are not authorized to make, and execute commands on an affected system with privileges of the root user.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-3375?
CVE-2020-3375 is a vulnerability in Cisco SD-WAN Solution Software that could allow an unauthenticated remote attacker to cause a buffer overflow on an affected device.
How does CVE-2020-3375 affect Cisco SD-WAN Solution Software?
CVE-2020-3375 affects Cisco SD-WAN Solution Software by causing a buffer overflow on an affected device.
How can an attacker exploit CVE-2020-3375?
An attacker can exploit CVE-2020-3375 by sending crafted traffic to an affected device.
What is the severity of CVE-2020-3375?
CVE-2020-3375 has a severity rating of 9.8, which is considered critical.
How can I fix CVE-2020-3375?
To fix CVE-2020-3375, it is recommended to update Cisco SD-WAN Solution Software to a version that is not affected by the vulnerability.