cbcvebase.
CVE-2022-20661
published 2022-04-15

CVE-2022-20661: Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute…

PriorityP418medium4.6CVSS 3.1
AVPACLPRNUINSUCNINAH
EPSS
0.22%
11.9th percentile
Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute persistent code at boot time or to permanently prevent the device from booting, resulting in a permanent denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

Affected

4 ranges
VendorProductVersion rangeFixed in
ciscocatalyst_digital_building_series_switches_and_cisco_catalyst_micro_switches
ciscocisco_ios_rommon_software
ciscoios
ciscoios>= 15.2\(5\)ex < 15.2\(7\)e515.2\(7\)e5

CVSS provenance

nvdv3.14.6MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.