CVE-2024-20492
published 2024-10-02CVE-2024-20492: A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the…
PriorityP336medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.55%
42.4th percentile
A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To exploit this vulnerability, the attacker must have Administrator-level credentials with read-write privileges on an affected device.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by submitting a series of crafted CLI commands. A successful exploit could allow the attacker to escape the restricted shell and gain root privileges on the underlying operating system of the affected device.
Note: Cisco Expressway Series refers to Cisco Expressway Control (Expressway-C) devices and Cisco Expressway Edge (Expressway-E) devices.
Affected
159 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
| cisco | cisco_telepresence_video_communication_server_expressway | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_cisco6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Expressway Series Privilege Escalation Vulnerability
vendor_cisco·2024-10-02·CVSS 6.0
CVE-2024-20492 [MEDIUM] CWE-77 Cisco Expressway Series Privilege Escalation Vulnerability
Cisco Expressway Series Privilege Escalation Vulnerability
A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To exploit this vulnerability, the attacker must have Administrator-level credentials with read-write privileges on an affected device.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by submitting a series of crafted CLI commands. A successful exploit could allow the attacker to escape the restricted shell and gain root privileges on the underlying operating system of the affected device.
Note: Cisco Expressway Series refers to Cisco Expressway
Cisco
Cisco Expressway Series Privilege Escalation Vulnerability
vendor_cisco·CVSS 3.1
CVE-2024-20492 Cisco Expressway Series Privilege Escalation Vulnerability
CVE-2024-20492: Cisco Expressway Series Privilege Escalation Vulnerability
A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root . To exploit this vulnerability, the attacker must have Administrator -level credentials with read-write privileges on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by submitting a series of crafted CLI commands. A successful exploit could allow the attacker to escape the restricted shell and gain root privileges on the underlying operating system of the affected device. Note: Cisco Expressway Series refers to
GHSA
GHSA-vp8m-pwx8-8rhh: A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks o
ghsa_unreviewed·2024-10-02
CVE-2024-20492 [MEDIUM] CWE-77 GHSA-vp8m-pwx8-8rhh: A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks o
A vulnerability in the restricted shell of Cisco Expressway Series could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To exploit this vulnerability, the attacker must have Administrator-level credentials with read-write privileges on an affected device.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by submitting a series of crafted CLI commands. A successful exploit could allow the attacker to escape the restricted shell and gain root privileges on the underlying operating system of the affected device.
Note: Cisco Expressway Series refers to Cisco Expressway Control (Expressway-C) devices and Cisco Expressway Edge (E
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-10-02
Published