First published: Wed Sep 02 2020(Updated: )
A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to execute that command, even though administrative privileges should be required. The attacker must have valid credentials on the affected device. The vulnerability is due to incorrect mapping in the source code of task group assignments for a specific command. An attacker could exploit this vulnerability by issuing the command, which they should not be authorized to issue, on an affected device. A successful exploit could allow the attacker to invalidate the integrity of the disk and cause the device to restart. This vulnerability could allow a user with read permissions to issue a specific command that should require Administrator privileges. Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-cli-privescl-sDVEmhqv
Credit: This vulnerability was found by Christopher York Cisco during internal security testing
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XR | =7.0.2<NCS5500=7.0.2<ASR9K-X64 | NCS5500 ASR9K-X64 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this Cisco IOS XR vulnerability is cisco-sa-iosxr-cli-privescl-sDVEmhqv.
The severity of the Cisco IOS XR vulnerability is rated as high with a CVSS score of 8.4.
The Cisco IOS XR vulnerability affects software versions 7.0.2 up to exclusive NCS5500 and 7.0.2 up to exclusive ASR9K-X64.
The Cisco IOS XR vulnerability allows an authenticated, local attacker with valid credentials to execute a specific CLI command, bypassing the required administrative privileges.
You can find more information about the Cisco IOS XR vulnerability at the following link: [Cisco Security Advisory](https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-cli-privescl-sDVEmhqv).