Cisco Catalyst Sd-Wan vulnerabilities
2 known vulnerabilities affecting cisco/cisco_catalyst_sd-wan.
Total CVEs
2
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2022-20655HIGHCVSS 8.8vN/A2024-11-15
CVE-2022-20655 [HIGH] CWE-78 CVE-2022-20655: A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an au
A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack.
The vulnerability is due to insufficient validation of a process argument on an affected device. An attacker could exploit this vulnerability by injecting commands during the execution of
cvelistv5nvd
CVE-2022-20775HIGHCVSS 7.8KEVv18.3.1v19.2.1+110 more2022-09-30
CVE-2022-20775 [HIGH] CWE-25 CVE-2022-20775: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges.
This vulnerability is due to improper access controls on commands within the application CLI. An attacker could exploit this vulnerability by running a maliciously crafted command on the application CLI. A successful exploit cou
cvelistv5nvd