cisco-sa-vmanxml-Aj4GFEKd: Cisco SD-WAN vManage Software XML External Entity Vulnerability
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system. The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could exploit this vulnerability by persuading a user to import a crafted XML file with malicious entries. A successful exploit could allow the attacker to read and write files within the affected application. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanxml-Aj4GFEKd
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-vmanxml-Aj4GFEKd?
The severity of cisco-sa-vmanxml-Aj4GFEKd is classified as critical due to the potential for unauthorized access to sensitive information.
How do I fix cisco-sa-vmanxml-Aj4GFEKd?
To fix cisco-sa-vmanxml-Aj4GFEKd, it is recommended to update Cisco SD-WAN vManage Software to the latest version provided by Cisco.
What kind of access can an attacker gain through cisco-sa-vmanxml-Aj4GFEKd?
An attacker exploiting cisco-sa-vmanxml-Aj4GFEKd can gain read and write access to the information stored on the affected system.
Who is affected by cisco-sa-vmanxml-Aj4GFEKd?
Users of Cisco SD-WAN vManage Software are affected by cisco-sa-vmanxml-Aj4GFEKd.
Is authentication required to exploit cisco-sa-vmanxml-Aj4GFEKd?
Yes, the vulnerability cisco-sa-vmanxml-Aj4GFEKd requires the attacker to be authenticated to exploit the system.