CVE-2014-7990
07.11.2014, 11:55
Cisco IOS XE 3.5E and earlier on WS-C3850, WS-C3860, and AIR-CT5760 devices does not properly parse the "request system shell" challenge response, which allows local users to obtain Linux root access by leveraging administrative privilege, aka Bug ID CSCur09815.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | ios_xe | 𝑥 ≤ 3.5e |
cisco | air-ct5760 | * |
cisco | ws-c3850 | * |
cisco | ws-c3860 | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References