CVE-2020-3180
16.07.2020, 18:15
A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, local attacker to access an affected device by using an account that has a default, static password. This account has root privileges. The vulnerability exists because the affected software has a user account with a default, static password. An attacker could exploit this vulnerability by remotely connecting to an affected system by using this account. A successful exploit could allow the attacker to log in by using this account with root privileges.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | sd-wan | 18.3.0 ≤ 𝑥 < 18.3.6 |
cisco | sd-wan | 18.4.0 ≤ 𝑥 < 18.4.5 |
cisco | sd-wan | 19.2.0 ≤ 𝑥 < 19.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration