First published: Wed Mar 13 2024(Updated: )
A vulnerability in the SSH client feature of Cisco IOS XR Software for Cisco 8000 Series Routers and Cisco Network Convergence System (NCS) 540 Series and 5700 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. This
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XRv 9000 | ||
Cisco 8000 Series Routers | ||
Cisco Network Convergence System 540 Series | ||
Cisco Network Convergence System (NCS) 5700 Series |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-iosxr-ssh-privesc-eWDMKew3 is classified as high due to the potential for privilege escalation by an authenticated local attacker.
To fix cisco-sa-iosxr-ssh-privesc-eWDMKew3, apply the latest software patch provided by Cisco for affected IOS XR devices.
The affected devices include Cisco 8000 Series Routers and Cisco NCS 540 and 5700 Series Routers running IOS XR Software.
Authenticated, local attackers are vulnerable to exploiting the privilege escalation vulnerability described in cisco-sa-iosxr-ssh-privesc-eWDMKew3.
The impact of cisco-sa-iosxr-ssh-privesc-eWDMKew3 can result in unauthorized access and control over the affected network devices.