CVE-2022-20731Incorrect Register Defaults or Module Parameters in Cisco Catalyst Digital Building Series Switches Firmware

Severity
6.8MEDIUMNVD
CNA4.6
EPSS
0.1%
top 74.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 15
Latest updateApr 16

Description

Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to execute persistent code at boot time or to permanently prevent the device from booting, resulting in a permanent denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 0.9 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-r38r-g64f-728h: Multiple vulnerabilities that affect Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches could allow an attacker to exec2022-04-16
CVEList
Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches Vulnerabilities2022-04-15

📋Vendor Advisories

1
Cisco
Cisco Catalyst Digital Building Series Switches and Cisco Catalyst Micro Switches Vulnerabilities2022-04-13
CVE-2022-20731 — Cisco vulnerability | cvebase