cisco-sa-bw-privesc-yw4ekrXW: Cisco BroadWorks Privilege Escalation Vulnerability
A vulnerability in Cisco BroadWorks could allow an authenticated, local attacker to elevate privileges to the root user on an affected device.The vulnerability is due to insufficient input validation by the operating system CLI. An attacker could exploit this vulnerability by
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-bw-privesc-yw4ekrXW?
The severity of the cisco-sa-bw-privesc-yw4ekrXW vulnerability is classified as high due to its potential for privilege escalation.
How do I fix cisco-sa-bw-privesc-yw4ekrXW?
To fix the cisco-sa-bw-privesc-yw4ekrXW vulnerability, upgrade to the recommended version of Cisco BroadWorks that addresses the privilege escalation issue.
Who is affected by cisco-sa-bw-privesc-yw4ekrXW?
The cisco-sa-bw-privesc-yw4ekrXW vulnerability affects authenticated users on devices running Cisco BroadWorks.
What types of attacks can exploit cisco-sa-bw-privesc-yw4ekrXW?
The cisco-sa-bw-privesc-yw4ekrXW vulnerability can be exploited by authenticated local attackers to gain root user privileges.
What is the cause of cisco-sa-bw-privesc-yw4ekrXW?
The cisco-sa-bw-privesc-yw4ekrXW vulnerability is caused by insufficient input validation within the operating system command line interface.