CVE-2021-34724: Cisco IOS XE SD-WAN Software Privilege Escalation Vulnerability
A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to elevate privileges and execute arbitrary code on the underlying operating system as the root user. An attacker must be authenticated on an affected device as a PRIV15 user. This vulnerability is due to insufficient file system protection and the presence of a sensitive file in the bootflash directory on an affected device. An attacker could exploit this vulnerability by overwriting an installer file stored in the bootflash directory with arbitrary commands that can be executed with root-level privileges. A successful exploit could allow the attacker to read and write changes to the configuration database on the affected device.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-34724?
CVE-2021-34724 is a vulnerability in the Cisco IOS XE SD-WAN Software CLI that allows an authenticated, local attacker to elevate privileges and execute arbitrary code on the underlying operating system as the root user.
What software is affected by CVE-2021-34724?
The Cisco IOS XE SD-WAN Software versions up to and including 17.3.1a are affected by CVE-2021-34724.
How severe is CVE-2021-34724?
CVE-2021-34724 has a severity rating of medium.
How can an attacker exploit CVE-2021-34724?
An attacker must be authenticated on an affected device as a PRIV15 user to exploit CVE-2021-34724.
Where can I find more information about CVE-2021-34724?
You can find more information about CVE-2021-34724 at the following link: [Cisco Security Advisory](https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxesdwan-privesc-VP4FG3jD)