Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit these vulnerabilities by running a malicious command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
History
23 May 2023, 13:55
Type | Values Removed | Values Added |
---|---|---|
First Time |
Cisco 4331\/k9 Integrated Services Router
Cisco 4351\/k9-ws Integrated Services Router Cisco 4331\/k9-ws Integrated Services Router Cisco 4321\/k9 Integrated Services Router Cisco 4351\/k9-rf Integrated Services Router Cisco 4331\/k9-rf Integrated Services Router Cisco 4351\/k9 Integrated Services Router Cisco 4321\/k9-rf Integrated Services Router Cisco 4321\/k9-ws Integrated Services Router |
|
CPE | cpe:2.3:h:cisco:isr4351\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-ws:-:*:*:*:*:*:*:* |
cpe:2.3:h:cisco:4351\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* |
22 May 2023, 18:57
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:cisco:isr_4221:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4000:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1131:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4351:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4331:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-2p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4431:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1160:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-6g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1120:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4321:-:*:*:*:*:*:*:* |
cpe:2.3:h:cisco:1111x_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4451-x_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4451_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:111x_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4000_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-6g_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1160_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1120_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1101_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-8p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4g_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1111x-8p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4221_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1101-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1131_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109-2p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4461_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4431_integrated_services_router:-:*:*:*:*:*:*:* |
First Time |
Cisco 4321 Integrated Services Router
Cisco 4221 Integrated Services Router Cisco 4351 Integrated Services Router Cisco 1101-4p Integrated Services Router Cisco 111x Integrated Services Router Cisco 1100-8p Integrated Services Router Cisco 4451-x Integrated Services Router Cisco 1131 Integrated Services Router Cisco 1111x-8p Integrated Services Router Cisco 1109-2p Integrated Services Router Cisco 1100 Integrated Services Router Cisco 4451 Integrated Services Router Cisco 1101 Integrated Services Router Cisco 1109-4p Integrated Services Router Cisco 1120 Integrated Services Router Cisco 4331 Integrated Services Router Cisco 4000 Integrated Services Router Cisco 1100-6g Integrated Services Router Cisco 1100-4p Integrated Services Router Cisco 1111x Integrated Services Router Cisco 1100-4g Integrated Services Router Cisco 1109 Integrated Services Router Cisco 4461 Integrated Services Router Cisco 1160 Integrated Services Router Cisco 4431 Integrated Services Router |
04 Oct 2022, 19:24
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-22 | |
First Time |
Cisco catalyst 8500l
Cisco 8818 Cisco 8812 Cisco asr 1006 Cisco asr 1004 Cisco isr 4431 Cisco isr4331\/k9-rf Cisco isr 4331 Cisco catalyst 8000v Edge Cisco asr 1006-x Cisco 8808 Cisco asr 1023 Cisco asr 1000 Cisco isr 1100-4g Cisco isr4321\/k9-ws Cisco 8804 Cisco 8201-32fh Cisco isr4351\/k9-rf Cisco isr 1131 Cisco isr 4451-x Cisco isr 1101 Cisco isr 1111x-8p Cisco sd-wan Vbond Orchestrator Cisco isr 1120 Cisco sd-wan Vsmart Controller Cisco catalyst 8510msr Cisco asr 1002-x Cisco isr 1100-4p Cisco isr 1100 Cisco isr4351\/k9-ws Cisco isr 1100-8p Cisco isr 1109-2p Cisco isr 1100-6g Cisco isr 1109 Cisco catalyst 8300-1n1s-4t2x Cisco isr4331\/k9 Cisco 8201 Cisco isr4321\/k9 Cisco asr 1001-hx R Cisco isr4321\/k9-rf Cisco asr 1002-hx Cisco isr 4351 Cisco isr 1160 Cisco 8101-32h Cisco catalyst Cg522-e Cisco catalyst 8200 Cisco catalyst 8510csr Cisco isr 4451 Cisco 8202 Cisco isr 4000 Cisco asr 1002 Cisco isr 4321 Cisco isr4331\/k9-ws Cisco asr 1001 Cisco asr 1001-x Cisco asr 1002-x R Cisco asr 1002-hx R Cisco isr 1101-4p Cisco 8831 Cisco catalyst Cg418-e Cisco isr 1109-4p Cisco 8102-64h Cisco isr 111x Cisco asr 1000-x Cisco isr 4461 Cisco asr 1009-x Cisco catalyst 8540csr Cisco asr 1001-x R Cisco 8101-32fh Cisco catalyst 8540msr Cisco asr 1001-hx Cisco sd-wan Vmanage Cisco catalyst 8300-2n2s-6t Cisco sd-wan Cisco isr 4221 Cisco asr 1013 Cisco Cisco catalyst 8300 Cisco catalyst 8300-2n2s-4t2x Cisco catalyst 8500 Cisco catalyst 8500-4qc Cisco isr 1111x Cisco isr4351\/k9 Cisco catalyst 8300-1n1s-6t |
|
CPE | cpe:2.3:h:cisco:8808:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1131:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8101-32h:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1120:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8510msr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8102-64h:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4331:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8831:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-2n2s-6t:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-2p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-hx_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8510csr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4351:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8202:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8540msr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4221:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4461:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:sd-wan:*:*:*:*:*:*:*:* cpe:2.3:h:cisco:8818:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8201-32fh:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8101-32fh:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8804:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4431:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-x_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8201:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:sd-wan_vmanage:*:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-1n1s-6t:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:sd-wan_vsmart_controller:*:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1023:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-6g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-1n1s-4t2x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:sd-wan_vbond_orchestrator:*:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-2n2s-4t2x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-x_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500l:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500-4qc:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-hx_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8200:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:catalyst_cg418-e:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8812:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1000:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4000:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1000-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4321:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1160:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:catalyst_8000v_edge:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:catalyst_cg522-e:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8540csr:-:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
References | (CISCO) https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF - Vendor Advisory |
30 Sep 2022, 19:20
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-09-30 19:15
Updated : 2023-12-10 14:35
NVD link : CVE-2022-20818
Mitre link : CVE-2022-20818
CVE.ORG link : CVE-2022-20818
JSON object : View
Products Affected
cisco
- 111x_integrated_services_router
- 4321\/k9_integrated_services_router
- asr_1002-x
- 1111x_integrated_services_router
- 4331_integrated_services_router
- 1100_integrated_services_router
- catalyst_8500-4qc
- asr_1001
- 4321\/k9-ws_integrated_services_router
- catalyst_8200
- 1131_integrated_services_router
- asr_1001-x
- catalyst_8000v_edge
- sd-wan_vmanage
- 8804
- 8102-64h
- asr_1000
- catalyst_8300-1n1s-4t2x
- 4331\/k9-ws_integrated_services_router
- asr_1001-hx_r
- 1120_integrated_services_router
- asr_1002-hx
- sd-wan_vsmart_controller
- asr_1004
- 4000_integrated_services_router
- 8101-32h
- catalyst_8300
- 4451-x_integrated_services_router
- sd-wan_vbond_orchestrator
- 4351_integrated_services_router
- catalyst_8540msr
- catalyst_8300-1n1s-6t
- 8202
- catalyst_cg522-e
- 4351\/k9-rf_integrated_services_router
- catalyst_8300-2n2s-4t2x
- catalyst_8500
- asr_1023
- 1100-6g_integrated_services_router
- 1100-4g_integrated_services_router
- asr_1009-x
- 1109-4p_integrated_services_router
- catalyst_8510csr
- 4351\/k9-ws_integrated_services_router
- asr_1001-x_r
- 4321_integrated_services_router
- 4321\/k9-rf_integrated_services_router
- 4451_integrated_services_router
- 4461_integrated_services_router
- 4221_integrated_services_router
- 4331\/k9-rf_integrated_services_router
- catalyst_8300-2n2s-6t
- 4351\/k9_integrated_services_router
- 8831
- 8818
- 4331\/k9_integrated_services_router
- asr_1006-x
- asr_1013
- 4431_integrated_services_router
- 1100-8p_integrated_services_router
- catalyst_8510msr
- 1100-4p_integrated_services_router
- catalyst_cg418-e
- asr_1002-hx_r
- 1160_integrated_services_router
- 8812
- 1109-2p_integrated_services_router
- asr_1006
- sd-wan
- asr_1001-hx
- 1111x-8p_integrated_services_router
- catalyst_8540csr
- catalyst_8500l
- asr_1002-x_r
- 1109_integrated_services_router
- 8201
- asr_1002
- 8201-32fh
- 1101_integrated_services_router
- 1101-4p_integrated_services_router
- 8808
- asr_1000-x
- 8101-32fh