CVE-2016-1420

The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 46%
VendorProductVersion
ciscoapplication_infrastructure_controller
-
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(1e\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(1h\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(1k\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(1n\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(2j\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(2m\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(3f\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(3i\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(3k\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(3n\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(4h\)
ciscoapplication_policy_infrastructure_controller_firmware
1.0\(4o\)
ciscoapplication_policy_infrastructure_controller_firmware
1.1\(0.920a\)
ciscoapplication_policy_infrastructure_controller_firmware
1.1\(1j\)
ciscoapplication_policy_infrastructure_controller_firmware
1.1\(3f\)
𝑥
= Vulnerable software versions