6.7
CVSSv3

CVE-2020-3214

Published: 03/06/2020 Updated: 22/05/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in Cisco IOS XE Software could allow an authenticated, local malicious user to escalate their privileges to a user with root-level privileges. The vulnerability is due to insufficient validation of user-supplied content. This vulnerability could allow an malicious user to load malicious software onto an affected device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios_xe 16.11.1

cisco ios_xe 16.11.1a

cisco ios_xe 16.11.1b

cisco ios_xe 16.11.1c

cisco ios_xe 16.11.1s

cisco ios_xe 16.11.2

cisco ios_xe 16.12.1

cisco ios_xe 16.12.1a

cisco ios_xe 16.12.1c

cisco ios_xe 16.12.1s

cisco ios_xe 16.12.1t

cisco ios_xe 16.12.1w

cisco ios_xe 16.12.1x

Vendor Advisories

A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to escalate their privileges to a user with root-level privileges The vulnerability is due to insufficient validation of user-supplied content This vulnerability could allow an attacker to load malicious software onto an affected device Cisco has released soft ...