CVE-2022-20934

A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software and Cisco FXOS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root.

 This vulnerability is due to improper input validation for specific CLI commands. An attacker could exploit this vulnerability by injecting operating system commands into a legitimate command. A successful exploit could allow the attacker to escape the restricted command prompt and execute arbitrary commands on the underlying operating system. To successfully exploit this vulnerability, an attacker would need valid Administrator credentials.
Command Injection
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
ciscoCNA
6 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
VendorProductVersion
ciscofirepower_threat_defense
6.1.0 ≤
𝑥
≤ 6.1.0.7
ciscofirepower_threat_defense
6.2.0 ≤
𝑥
≤ 6.2.0.6
ciscofirepower_threat_defense
6.2.2 ≤
𝑥
≤ 6.2.2.5
ciscofirepower_threat_defense
6.2.3 ≤
𝑥
≤ 6.2.3.18
ciscofirepower_threat_defense
6.3.0 ≤
𝑥
≤ 6.3.0.5
ciscofirepower_threat_defense
6.4.0 ≤
𝑥
≤ 6.4.0.15
ciscofirepower_threat_defense
6.5.0 ≤
𝑥
≤ 6.5.0.5
ciscofirepower_threat_defense
6.7.0 ≤
𝑥
≤ 6.7.0.3
ciscofirepower_threat_defense
7.0.0 ≤
𝑥
≤ 7.0.4
ciscofirepower_threat_defense
6.2.1
ciscofirepower_threat_defense
6.6.0
ciscofirepower_threat_defense
6.6.0.1
ciscofirepower_threat_defense
6.6.1
ciscofirepower_threat_defense
6.6.3
ciscofirepower_threat_defense
6.6.4
ciscofirepower_threat_defense
6.6.5
ciscofirepower_threat_defense
6.6.5.1
ciscofirepower_threat_defense
6.6.5.2
ciscofirepower_threat_defense
6.6.7
ciscofirepower_threat_defense
7.1.0.0
ciscofirepower_threat_defense
7.1.0.1
ciscofirepower_threat_defense
7.1.0.2
ciscofirepower_threat_defense
7.2.0
ciscofirepower_threat_defense
7.2.0.1
ciscofirepower_extensible_operating_system
1.1.1.147
ciscofirepower_extensible_operating_system
1.1.1.160
ciscofirepower_extensible_operating_system
1.1.2.51
ciscofirepower_extensible_operating_system
1.1.2.178
ciscofirepower_extensible_operating_system
1.1.3.84
ciscofirepower_extensible_operating_system
1.1.3.86
ciscofirepower_extensible_operating_system
1.1.3.97
ciscofirepower_extensible_operating_system
1.1.4.95
ciscofirepower_extensible_operating_system
1.1.4.117
ciscofirepower_extensible_operating_system
1.1.4.140
ciscofirepower_extensible_operating_system
1.1.4.169
ciscofirepower_extensible_operating_system
1.1.4.175
ciscofirepower_extensible_operating_system
1.1.4.178
ciscofirepower_extensible_operating_system
1.1.4.179
ciscofirepower_extensible_operating_system
2.0.1.37
ciscofirepower_extensible_operating_system
2.0.1.68
ciscofirepower_extensible_operating_system
2.0.1.86
ciscofirepower_extensible_operating_system
2.0.1.135
ciscofirepower_extensible_operating_system
2.0.1.141
ciscofirepower_extensible_operating_system
2.0.1.144
ciscofirepower_extensible_operating_system
2.0.1.148
ciscofirepower_extensible_operating_system
2.0.1.149
ciscofirepower_extensible_operating_system
2.0.1.153
ciscofirepower_extensible_operating_system
2.0.1.159
ciscofirepower_extensible_operating_system
2.0.1.188
ciscofirepower_extensible_operating_system
2.0.1.201
ciscofirepower_extensible_operating_system
2.0.1.203
ciscofirepower_extensible_operating_system
2.0.1.204
ciscofirepower_extensible_operating_system
2.0.1.206
ciscofirepower_extensible_operating_system
2.1.1.64
ciscofirepower_extensible_operating_system
2.1.1.73
ciscofirepower_extensible_operating_system
2.1.1.77
ciscofirepower_extensible_operating_system
2.1.1.83
ciscofirepower_extensible_operating_system
2.1.1.85
ciscofirepower_extensible_operating_system
2.1.1.86
ciscofirepower_extensible_operating_system
2.1.1.97
ciscofirepower_extensible_operating_system
2.1.1.106
ciscofirepower_extensible_operating_system
2.1.1.107
ciscofirepower_extensible_operating_system
2.1.1.113
ciscofirepower_extensible_operating_system
2.1.1.115
ciscofirepower_extensible_operating_system
2.1.1.116
ciscofirepower_extensible_operating_system
2.2.1.63
ciscofirepower_extensible_operating_system
2.2.1.66
ciscofirepower_extensible_operating_system
2.2.1.70
ciscofirepower_extensible_operating_system
2.2.2.17
ciscofirepower_extensible_operating_system
2.2.2.19
ciscofirepower_extensible_operating_system
2.2.2.24
ciscofirepower_extensible_operating_system
2.2.2.26
ciscofirepower_extensible_operating_system
2.2.2.28
ciscofirepower_extensible_operating_system
2.2.2.54
ciscofirepower_extensible_operating_system
2.2.2.60
ciscofirepower_extensible_operating_system
2.2.2.71
ciscofirepower_extensible_operating_system
2.2.2.83
ciscofirepower_extensible_operating_system
2.2.2.86
ciscofirepower_extensible_operating_system
2.2.2.91
ciscofirepower_extensible_operating_system
2.2.2.97
ciscofirepower_extensible_operating_system
2.2.2.101
ciscofirepower_extensible_operating_system
2.2.2.137
ciscofirepower_extensible_operating_system
2.2.2.148
ciscofirepower_extensible_operating_system
2.2.2.149
ciscofirepower_extensible_operating_system
2.3.1.56
ciscofirepower_extensible_operating_system
2.3.1.58
ciscofirepower_extensible_operating_system
2.3.1.66
ciscofirepower_extensible_operating_system
2.3.1.73
ciscofirepower_extensible_operating_system
2.3.1.75
ciscofirepower_extensible_operating_system
2.3.1.88
ciscofirepower_extensible_operating_system
2.3.1.91
ciscofirepower_extensible_operating_system
2.3.1.93
ciscofirepower_extensible_operating_system
2.3.1.99
ciscofirepower_extensible_operating_system
2.3.1.110
ciscofirepower_extensible_operating_system
2.3.1.111
ciscofirepower_extensible_operating_system
2.3.1.130
ciscofirepower_extensible_operating_system
2.3.1.144
ciscofirepower_extensible_operating_system
2.3.1.145
ciscofirepower_extensible_operating_system
2.3.1.155
ciscofirepower_extensible_operating_system
2.3.1.166
ciscofirepower_extensible_operating_system
2.3.1.173
ciscofirepower_extensible_operating_system
2.3.1.179
ciscofirepower_extensible_operating_system
2.3.1.180
ciscofirepower_extensible_operating_system
2.3.1.190
ciscofirepower_extensible_operating_system
2.3.1.215
ciscofirepower_extensible_operating_system
2.3.1.216
ciscofirepower_extensible_operating_system
2.3.1.219
ciscofirepower_extensible_operating_system
2.4.1.101
ciscofirepower_extensible_operating_system
2.4.1.214
ciscofirepower_extensible_operating_system
2.4.1.222
ciscofirepower_extensible_operating_system
2.4.1.234
ciscofirepower_extensible_operating_system
2.4.1.238
ciscofirepower_extensible_operating_system
2.4.1.244
ciscofirepower_extensible_operating_system
2.4.1.249
ciscofirepower_extensible_operating_system
2.4.1.252
ciscofirepower_extensible_operating_system
2.4.1.266
ciscofirepower_extensible_operating_system
2.4.1.268
ciscofirepower_extensible_operating_system
2.4.1.273
ciscofirepower_extensible_operating_system
2.6.1.131
ciscofirepower_extensible_operating_system
2.6.1.157
ciscofirepower_extensible_operating_system
2.6.1.166
ciscofirepower_extensible_operating_system
2.6.1.169
ciscofirepower_extensible_operating_system
2.6.1.174
ciscofirepower_extensible_operating_system
2.6.1.187
ciscofirepower_extensible_operating_system
2.6.1.192
ciscofirepower_extensible_operating_system
2.6.1.204
ciscofirepower_extensible_operating_system
2.6.1.214
ciscofirepower_extensible_operating_system
2.6.1.224
ciscofirepower_extensible_operating_system
2.6.1.229
ciscofirepower_extensible_operating_system
2.6.1.230
ciscofirepower_extensible_operating_system
2.6.1.238
ciscofirepower_extensible_operating_system
2.6.1.239
ciscofirepower_extensible_operating_system
2.6.1.254
ciscofirepower_extensible_operating_system
2.7.1.92
ciscofirepower_extensible_operating_system
2.7.1.98
ciscofirepower_extensible_operating_system
2.7.1.106
ciscofirepower_extensible_operating_system
2.7.1.122
ciscofirepower_extensible_operating_system
2.7.1.131
ciscofirepower_extensible_operating_system
2.7.1.143
ciscofirepower_extensible_operating_system
2.8.1.105
ciscofirepower_extensible_operating_system
2.8.1.125
ciscofirepower_extensible_operating_system
2.8.1.139
ciscofirepower_extensible_operating_system
2.8.1.143
ciscofirepower_extensible_operating_system
2.8.1.152
ciscofirepower_extensible_operating_system
2.8.1.162
ciscofirepower_extensible_operating_system
2.8.1.164
ciscofirepower_extensible_operating_system
2.8.1.172
ciscofirepower_extensible_operating_system
2.9.1.131
ciscofirepower_extensible_operating_system
2.9.1.135
ciscofirepower_extensible_operating_system
2.9.1.143
ciscofirepower_extensible_operating_system
2.9.1.150
ciscofirepower_extensible_operating_system
2.9.1.158
ciscofirepower_extensible_operating_system
2.10.1.159
ciscofirepower_extensible_operating_system
2.10.1.166
ciscofirepower_extensible_operating_system
2.10.1.179
ciscofirepower_extensible_operating_system
2.11.1.154
𝑥
= Vulnerable software versions