7.8
HIGH CVSS 3.1
CVE-2022-20775
Cisco SD-WAN Software Privilege Escalation Vulnerabilities
Description

Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit these vulnerabilities by running a malicious command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user.

INFO

Published Date :

Sept. 30, 2022, 7:15 p.m.

Last Modified :

Nov. 21, 2024, 6:43 a.m.

Remotely Exploit :

No
Affected Products

The following products are affected by CVE-2022-20775 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Cisco sd-wan
2 Cisco catalyst_8500
3 Cisco catalyst_8510csr
4 Cisco catalyst_8510msr
5 Cisco catalyst_8540csr
6 Cisco catalyst_8540msr
7 Cisco catalyst_sd-wan_manager
8 Cisco sd-wan_vbond_orchestrator
9 Cisco asr_1001
10 Cisco asr_1002
11 Cisco asr_1002-x
12 Cisco asr_1004
13 Cisco asr_1006
14 Cisco asr_1013
15 Cisco sd-wan_vsmart_controller
16 Cisco sd-wan_solution
17 Cisco 8201
18 Cisco 8202
19 Cisco 1100-4g_integrated_services_router
20 Cisco 1100-4p_integrated_services_router
21 Cisco 1100-6g_integrated_services_router
22 Cisco 1100-8p_integrated_services_router
23 Cisco 1100_integrated_services_router
24 Cisco 1101-4p_integrated_services_router
25 Cisco 1101_integrated_services_router
26 Cisco 1109-2p_integrated_services_router
27 Cisco 1109-4p_integrated_services_router
28 Cisco 1109_integrated_services_router
29 Cisco 1111x-8p_integrated_services_router
30 Cisco 111x_integrated_services_router
31 Cisco 1120_integrated_services_router
32 Cisco 1131_integrated_services_router
33 Cisco 1160_integrated_services_router
34 Cisco 4000_integrated_services_router
35 Cisco 4221_integrated_services_router
36 Cisco 8101-32fh
37 Cisco 8101-32h
38 Cisco 8102-64h
39 Cisco 8201-32fh
40 Cisco 8804
41 Cisco 8808
42 Cisco 8812
43 Cisco 8818
44 Cisco asr_1000
45 Cisco asr_1001-hx
46 Cisco asr_1001-hx_r
47 Cisco asr_1001-x
48 Cisco asr_1001-x_r
49 Cisco asr_1002-hx
50 Cisco asr_1002-hx_r
51 Cisco asr_1002-x_r
52 Cisco asr_1006-x
53 Cisco asr_1009-x
54 Cisco asr_1023
55 Cisco catalyst_8200
56 Cisco catalyst_8300
57 Cisco catalyst_8300-1n1s-4t2x
58 Cisco catalyst_8300-1n1s-6t
59 Cisco catalyst_8300-2n2s-4t2x
60 Cisco catalyst_8300-2n2s-6t
61 Cisco catalyst_8500-4qc
62 Cisco catalyst_8500l
63 Cisco 1111x_integrated_services_router
64 Cisco 4321\/k9-rf_integrated_services_router
65 Cisco 4321\/k9-ws_integrated_services_router
66 Cisco 4321\/k9_integrated_services_router
67 Cisco 4321_integrated_services_router
68 Cisco 4331\/k9-rf_integrated_services_router
69 Cisco 4331\/k9-ws_integrated_services_router
70 Cisco 4331\/k9_integrated_services_router
71 Cisco 4331_integrated_services_router
72 Cisco 4351\/k9-rf_integrated_services_router
73 Cisco 4351\/k9-ws_integrated_services_router
74 Cisco 4351\/k9_integrated_services_router
75 Cisco 4351_integrated_services_router
76 Cisco 4431_integrated_services_router
77 Cisco 4451-x_integrated_services_router
78 Cisco 4451_integrated_services_router
79 Cisco 4461_integrated_services_router
80 Cisco asr_1000-x
81 Cisco 8831
82 Cisco catalyst_8000v_edge
83 Cisco catalyst_cg418-e
84 Cisco catalyst_cg522-e
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 3.1 HIGH [email protected]
CVSS 3.1 HIGH [email protected]
Solution
This information is provided by the 3rd party feeds.
  • Upgrade to the relevant fixed version referenced in Cisco bug IDs CSCwa52793, CSCwb54198
Public PoC/Exploit Available at Github

CVE-2022-20775 has a 1 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2022-20775 is associated with the following CWEs:

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

test 反向辣鸡数据投放 CVE-2022-23305 工具 利用 教程 Exploit POC

cve-2020-

Updated: 9 months, 2 weeks ago
5 stars 3 fork 3 watcher
Born at : Jan. 21, 2022, 5:07 a.m. This repo has been linked 2650 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2022-20775 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2022-20775 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Modified by af854a3a-2127-422b-91ae-364da2661108

    Nov. 21, 2024

    Action Type Old Value New Value
    Added Reference https://github.com/orangecertcc/security-research/security/advisories/GHSA-wmjv-552v-pxjc
    Added Reference https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF
    Added Reference https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF
  • CVE Modified by [email protected]

    May. 14, 2024

    Action Type Old Value New Value
  • CVE Modified by [email protected]

    Nov. 07, 2023

    Action Type Old Value New Value
    Removed CVSS V3 Cisco Systems, Inc. AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
    Added CVSS V3.1 Cisco Systems, Inc. AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
  • CPE Deprecation Remap by [email protected]

    Oct. 16, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:a:cisco:sd-wan_vmanage:*:*:*:*:*:*:*:* versions from (including) 20.7 from (excluding) 20.7.2 OR *cpe:2.3:a:cisco:catalyst_sd-wan_manager:*:*:*:*:*:*:*:* versions from (including) 20.7 from (excluding) 20.7.2
  • CPE Deprecation Remap by [email protected]

    Oct. 16, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:a:cisco:sd-wan_vmanage:20.8:*:*:*:*:*:*:* OR *cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.8:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    Oct. 16, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:a:cisco:sd-wan_vmanage:*:*:*:*:*:*:*:* versions from (including) 20.6 from (excluding) 20.6.3 OR *cpe:2.3:a:cisco:catalyst_sd-wan_manager:*:*:*:*:*:*:*:* versions from (including) 20.6 from (excluding) 20.6.3
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4321/k9-ws:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4321/k9-ws_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4351/k9:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4351/k9_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4331/k9-ws:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4331/k9-ws_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4331/k9:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4331/k9_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4331/k9-rf:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4331/k9-rf_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4351/k9-rf:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4351/k9-rf_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4351/k9-ws:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4351/k9-ws_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4321/k9-rf:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4321/k9-rf_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 23, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr4321/k9:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4321/k9_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1109-4p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1109-4p_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1109-2p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1109-2p_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4431:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4431_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4461:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4461_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1100:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1100_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1101:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1101_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1109:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1109_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_111x:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:111x_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1120:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1120_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1160:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1160_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1111x:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1111x_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4451-x:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4451-x_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4451:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4451_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1100-4g:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1100-4g_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1100-6g:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1100-6g_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1131:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1131_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4221:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4221_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4331:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4331_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4000:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4000_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4321:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4321_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_4351:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:4351_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1111x-8p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1111x-8p_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1100-8p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1100-8p_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1100-4p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1100-4p_integrated_services_router:-:*:*:*:*:*:*:*
  • CPE Deprecation Remap by [email protected]

    May. 22, 2023

    Action Type Old Value New Value
    Changed CPE Configuration OR *cpe:2.3:h:cisco:isr_1101-4p:-:*:*:*:*:*:*:* OR *cpe:2.3:h:cisco:1101-4p_integrated_services_router:-:*:*:*:*:*:*:*
  • Modified Analysis by [email protected]

    Nov. 10, 2022

    Action Type Old Value New Value
    Changed Reference Type https://github.com/orangecertcc/security-research/security/advisories/GHSA-wmjv-552v-pxjc No Types Assigned https://github.com/orangecertcc/security-research/security/advisories/GHSA-wmjv-552v-pxjc Exploit, Third Party Advisory
  • CVE Modified by [email protected]

    Oct. 11, 2022

    Action Type Old Value New Value
    Added Reference https://github.com/orangecertcc/security-research/security/advisories/GHSA-wmjv-552v-pxjc [No Types Assigned]
  • Initial Analysis by [email protected]

    Oct. 04, 2022

    Action Type Old Value New Value
    Added CVSS V3.1 NIST AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
    Changed Reference Type https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF No Types Assigned https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF Vendor Advisory
    Added CWE NIST CWE-22
    Added CPE Configuration OR *cpe:2.3:a:cisco:sd-wan_vbond_orchestrator:*:*:*:*:*:*:*:* versions from (including) 20.6 up to (excluding) 20.6.3 *cpe:2.3:a:cisco:sd-wan_vbond_orchestrator:*:*:*:*:*:*:*:* versions from (including) 20.7 up to (excluding) 20.7.2 *cpe:2.3:a:cisco:sd-wan_vbond_orchestrator:20.8:*:*:*:*:*:*:* *cpe:2.3:a:cisco:sd-wan_vmanage:*:*:*:*:*:*:*:* versions from (including) 20.6 up to (excluding) 20.6.3 *cpe:2.3:a:cisco:sd-wan_vmanage:*:*:*:*:*:*:*:* versions from (including) 20.7 up to (excluding) 20.7.2 *cpe:2.3:a:cisco:sd-wan_vmanage:20.8:*:*:*:*:*:*:* *cpe:2.3:a:cisco:sd-wan_vsmart_controller:*:*:*:*:*:*:*:* versions from (including) 20.6 up to (excluding) 20.6.3 *cpe:2.3:a:cisco:sd-wan_vsmart_controller:*:*:*:*:*:*:*:* versions from (including) 20.7 up to (excluding) 20.7.2 *cpe:2.3:a:cisco:sd-wan_vsmart_controller:20.8:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:a:cisco:sd-wan:*:*:*:*:*:*:*:* versions from (including) 20.6 up to (excluding) 20.6.3 *cpe:2.3:a:cisco:sd-wan:*:*:*:*:*:*:*:* versions from (including) 20.7 up to (excluding) 20.7.2 *cpe:2.3:a:cisco:sd-wan:20.8:*:*:*:*:*:*:* OR cpe:2.3:a:cisco:catalyst_8000v_edge:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:catalyst_cg418-e:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:catalyst_cg522-e:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8101-32fh:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8101-32h:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8102-64h:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8201:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8201-32fh:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8202:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8804:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8808:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8812:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8818:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:8831:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1000:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1000-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-hx_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1001-x_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-hx_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1002-x_r:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_1023:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8200:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-1n1s-4t2x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-1n1s-6t:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-2n2s-4t2x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8300-2n2s-6t:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500-4qc:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8500l:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8510csr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8510msr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8540csr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:catalyst_8540msr:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-6g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-2p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1120:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1131:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1160:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4000:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4221:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4321:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4331:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4351:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4431:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4451-x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4461:-:*:*:*:*:*:*:*
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
Vulnerability Scoring Details
Base CVSS Score: 7.8
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact
Exploit Prediction

EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days.

0.15 }} 0.02%

score

0.36022

percentile