6.7
CVSSv3

CVE-2023-20043

Published: 20/01/2023 Updated: 25/01/2024
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 0

Vulnerability Summary

A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local malicious user to elevate their privileges. This vulnerability is due to insecure file permissions. An attacker could exploit this vulnerability by calling the script with sudo. A successful exploit could allow the malicious user to take complete control of the affected device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco cx cloud agent

cisco cx cloud agent 2.2

Vendor Advisories

Multiple vulnerabilities in Cisco CX Cloud Agent could allow an authenticated, local attacker to elevate privileges These vulnerabilities are due to insecure file permissions A successful exploit could allow an attacker to take complete control of the affected device For more information about these vulnerabilities, see the Details section of th ...