cisco vbond-orchestrator CVE-2020-3379 vulnerability in Cisco Products
Published on July 16, 2020

Cisco SD-WAN Solution Software Privilege Escalation Vulnerability
A vulnerability in Cisco SD-WAN Solution Software could allow an authenticated, local attacker to elevate privileges to Administrator on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to gain administrative privileges.

Vendor Advisory NVD

Weakness Type

Permissions, Privileges, and Access Controls

Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.


Products Associated with CVE-2020-3379

stack.watch emails you whenever new vulnerabilities are published in Cisco Vbond Orchestrator or Cisco Vsmart Controller. Just hit a watch button to start following.

 
 

Affected Versions

Cisco SD-WAN Solution Version n/a is affected by CVE-2020-3379

Exploit Probability

EPSS
0.06%
Percentile
17.65%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.