First published: Wed Jul 05 2023(Updated: )
A vulnerability in Cisco BroadWorks could allow an authenticated, local attacker to elevate privileges to the root user on an affected device.The vulnerability is due to insufficient input validation by the operating system CLI. An attacker could exploit this vulnerability by
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco BroadWorks Xtended Services Platform Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of the cisco-sa-bw-privesc-yw4ekrXW vulnerability is classified as high due to its potential for privilege escalation.
To fix the cisco-sa-bw-privesc-yw4ekrXW vulnerability, upgrade to the recommended version of Cisco BroadWorks that addresses the privilege escalation issue.
The cisco-sa-bw-privesc-yw4ekrXW vulnerability affects authenticated users on devices running Cisco BroadWorks.
The cisco-sa-bw-privesc-yw4ekrXW vulnerability can be exploited by authenticated local attackers to gain root user privileges.
The cisco-sa-bw-privesc-yw4ekrXW vulnerability is caused by insufficient input validation within the operating system command line interface.