6.7
CVSSv3

CVE-2020-3214

Published: 03/06/2020 Updated: 22/05/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in Cisco IOS XE Software could allow an authenticated, local malicious user to escalate their privileges to a user with root-level privileges. The vulnerability is due to insufficient validation of user-supplied content. This vulnerability could allow an malicious user to load malicious software onto an affected device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 16.11.1

cisco ios xe 16.11.1a

cisco ios xe 16.11.1b

cisco ios xe 16.11.1c

cisco ios xe 16.11.1s

cisco ios xe 16.11.2

cisco ios xe 16.12.1

cisco ios xe 16.12.1a

cisco ios xe 16.12.1c

cisco ios xe 16.12.1s

cisco ios xe 16.12.1t

cisco ios xe 16.12.1w

cisco ios xe 16.12.1x

Vendor Advisories

A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to escalate their privileges to a user with root-level privileges The vulnerability is due to insufficient validation of user-supplied content This vulnerability could allow an attacker to load malicious software onto an affected device Cisco has released soft ...