7.8
CVSSv3

CVE-2016-1420

Published: 10/06/2016 Updated: 10/06/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software prior to 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco application_infrastructure_controller -

cisco application_policy_infrastructure_controller_firmware 1.0\\(2j\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(1n\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(1k\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(1h\\)

cisco application_policy_infrastructure_controller_firmware 1.1\\(1j\\)

cisco application_policy_infrastructure_controller_firmware 1.1\\(0.920a\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(4o\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(4h\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(3n\\)

cisco application_policy_infrastructure_controller_firmware 1.1\\(3f\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(3i\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(2m\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(1e\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(3k\\)

cisco application_policy_infrastructure_controller_firmware 1.0\\(3f\\)