cisco-sa-caf-3dXM8exv: Cisco IOx Application Framework Arbitrary File Creation Vulnerability
A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, remote attacker to write or modify arbitrary files in the virtual instance that is running on the affected device. The vulnerability is due to insufficient input validation of user-supplied application packages. An attacker who can upload a malicious package within Cisco IOx could exploit the vulnerability to modify arbitrary files. The impacts of a successful exploit are limited to the scope of the virtual instance and do not affect the device that is hosting Cisco IOx.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-caf-3dXM8exv
Affected Software
Event History
Frequently Asked Questions
What is Cisco SA CAF 3dXM8exv vulnerability?
Cisco SA CAF 3dXM8exv is an arbitrary file creation vulnerability in the Cisco IOx application environment that allows an authenticated, remote attacker to write or modify arbitrary files in the virtual instance running on the affected device.
What is the severity of Cisco SA CAF 3dXM8exv vulnerability?
The severity of Cisco SA CAF 3dXM8exv vulnerability is high, with a severity value of 8.1.
How does Cisco SA CAF 3dXM8exv vulnerability occur?
Cisco SA CAF 3dXM8exv vulnerability occurs due to insufficient input validation in the Cisco Application Framework component of the Cisco IOx application environment.
Which software versions are affected by Cisco SA CAF 3dXM8exv vulnerability?
The affected software versions include IR510 Operating System Release 6.1.27, Cisco IOS XE Software Release 17.2(1), Cisco IOS Software Release 15.2.(7a)E0b, IOx image for CGR1000 Release 1.10.0.6, and Cisco IOS Software Release 15.9(3)M.
How can I fix Cisco SA CAF 3dXM8exv vulnerability?
To fix Cisco SA CAF 3dXM8exv vulnerability, apply the recommended software updates provided by Cisco or follow the mitigation steps mentioned in the Cisco security advisory.