Back

HIGH

Cisco FXOS Software and Firepower Threat Defense Software Command Injection Vulnerabilities

Published Oct 2, 2019

Description

Multiple vulnerabilities in the CLI of Cisco FXOS Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute commands on the underlying operating system (OS) with root privileges. These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by including crafted arguments to specific CLI commands. A successful exploit could allow the attacker to execute commands on the underlying OS with root privileges.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner cisco
Published Oct 2, 2019
Updated Nov 20, 2024
Reserved Jun 4, 2019
CISA Vulnrichment
Updated Nov 20, 2024
NVD
Status Modified
Modified Aug 11, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner cisco
Published Oct 2, 2019
Updated Nov 20, 2024
Exploited since n/a
EUVD-2019-4290