First published: Wed Mar 27 2024(Updated: )
A vulnerability in the Unified Threat Defense (UTD) configuration CLI of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying host operating system. To exploit this vulnerability, an attacker must have level 15
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE Web UI |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-iosxe-utd-cmd-JbL8KvHT is classified as critical due to the potential for arbitrary command execution.
To fix cisco-sa-iosxe-utd-cmd-JbL8KvHT, upgrade your Cisco IOS XE Software to a version that includes the necessary security patches.
Administrators using Cisco IOS XE Software with UTD configuration CLI are affected by cisco-sa-iosxe-utd-cmd-JbL8KvHT.
The impact of cisco-sa-iosxe-utd-cmd-JbL8KvHT is that an authenticated local attacker could execute arbitrary commands as root on the system.
Cisco IOS XE Software versions that support Unified Threat Defense configuration are impacted by cisco-sa-iosxe-utd-cmd-JbL8KvHT.