CVE-2022-20655
published 2024-11-15CVE-2022-20655: A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection…
PriorityP355high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.83%
53.4th percentile
A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack.
The vulnerability is due to insufficient validation of a process argument on an affected device. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privilege level of ConfD, which is commonly root.
Affected
66 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
| cisco | cisco_carrier_packet_transport | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
vendor_cisco8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hm47-g5j3-8f32: A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command i
ghsa_unreviewed·2024-11-15
CVE-2022-20655 [HIGH] CWE-78 GHSA-hm47-g5j3-8f32: A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command i
A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack.
The vulnerability is due to insufficient validation of a process argument on an affected device. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privilege level of ConfD, which is commonly root.
Cisco
Multiple Cisco Products CLI Command Injection Vulnerability
vendor_cisco·2022-01-19·CVSS 8.8
CVE-2022-20655 [HIGH] CWE-78 Multiple Cisco Products CLI Command Injection Vulnerability
Multiple Cisco Products CLI Command Injection Vulnerability
A vulnerability in the implementation of the CLI for multiple Cisco products could allow an authenticated, local attacker to perform a command injection attack.
This vulnerability is due to insufficient validation of a process argument on an affected product. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privileges of the management framework process, which are commonly root privileges.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the followin
Cisco
ConfD CLI Command Injection Vulnerability
vendor_cisco·2022-01-19·CVSS 8.8
CVE-2022-20655 [HIGH] CWE-78 ConfD CLI Command Injection Vulnerability
ConfD CLI Command Injection Vulnerability
A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack.
The vulnerability is due to insufficient validation of a process argument on an affected device. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privilege level of ConfD, which is commonly root.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/
Cisco
Multiple Cisco Products CLI Command Injection Vulnerability
vendor_cisco·CVSS 3.1
CVE-2022-20655 Multiple Cisco Products CLI Command Injection Vulnerability
CVE-2022-20655: Multiple Cisco Products CLI Command Injection Vulnerability
A vulnerability in the implementation of the CLI for multiple Cisco products could allow an authenticated, local attacker to perform a command injection attack. This vulnerability is due to insufficient validation of a process argument on an affected product. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privileges of the management framework process, which are commonly root privileges. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.1
CWE: CWE-78, CWE-78
Bug IDs: CSCvm76596, CSCvq21764, CSCvq22323
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-11-15
Published