Cisco

Enterprise Nfv Infrastructure Software

37 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.83%
  • Veröffentlicht 15.11.2024 16:15:20
  • Zuletzt bearbeitet 15.04.2026 00:35:42

A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack. The vulnerability is due to insufficient validation of a process argument on an a...

  • EPSS 0.19%
  • Veröffentlicht 10.03.2023 21:15:10
  • Zuletzt bearbeitet 21.11.2024 06:43:50

A vulnerability in the upgrade signature verification of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, local attacker to provide an unauthentic upgrade file for upload. This vulnerability is due to insufficien...

Exploit
  • EPSS 11.23%
  • Veröffentlicht 04.05.2022 17:15:08
  • Zuletzt bearbeitet 21.11.2024 06:43:32

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the h...

Exploit
  • EPSS 10.46%
  • Veröffentlicht 04.05.2022 17:15:08
  • Zuletzt bearbeitet 21.11.2024 06:43:32

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the h...

Exploit
  • EPSS 11.07%
  • Veröffentlicht 04.05.2022 17:15:08
  • Zuletzt bearbeitet 21.11.2024 06:43:32

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the h...

Exploit
  • EPSS 17.66%
  • Veröffentlicht 02.09.2021 03:15:06
  • Zuletzt bearbeitet 21.11.2024 06:11:06

A vulnerability in the TACACS+ authentication, authorization and accounting (AAA) feature of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to bypass authentication and log in to an affected devic...

  • EPSS 0.67%
  • Veröffentlicht 06.05.2021 13:15:10
  • Zuletzt bearbeitet 21.11.2024 05:44:19

A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to perform a command injection attack on an affected device. The vulnerability is due to insufficient validation of user-supplied inp...

  • EPSS 0.61%
  • Veröffentlicht 13.01.2021 22:15:14
  • Zuletzt bearbeitet 21.11.2024 05:43:38

A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management inte...

  • EPSS 4.8%
  • Veröffentlicht 18.11.2020 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:31:08

Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges. The vulnerabilities are due to improper boundary checks for ...

  • EPSS 1.21%
  • Veröffentlicht 04.09.2020 03:15:10
  • Zuletzt bearbeitet 24.08.2026 18:22:58

A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to overwrite certain files that should be restricted on an affected device. The vulnerability is due to insufficient...