cisco-sa-iosxe-utd-cmd-JbL8KvHT: Cisco IOS XE Software Unified Threat Defense Command Injection Vulnerability
A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying host operating system. To exploit this vulnerability, an attacker must have level 15
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-iosxe-utd-cmd-JbL8KvHT?
The severity of cisco-sa-iosxe-utd-cmd-JbL8KvHT is classified as critical due to the potential for arbitrary command execution.
How do I fix cisco-sa-iosxe-utd-cmd-JbL8KvHT?
To fix cisco-sa-iosxe-utd-cmd-JbL8KvHT, upgrade your Cisco IOS XE Software to a version that includes the necessary security patches.
Who is affected by cisco-sa-iosxe-utd-cmd-JbL8KvHT?
Administrators using Cisco IOS XE Software with UTD configuration CLI are affected by cisco-sa-iosxe-utd-cmd-JbL8KvHT.
What is the impact of cisco-sa-iosxe-utd-cmd-JbL8KvHT?
The impact of cisco-sa-iosxe-utd-cmd-JbL8KvHT is that an authenticated local attacker could execute arbitrary commands as root on the system.
What versions of software are impacted by cisco-sa-iosxe-utd-cmd-JbL8KvHT?
Cisco IOS XE Software versions that support Unified Threat Defense configuration are impacted by cisco-sa-iosxe-utd-cmd-JbL8KvHT.