PT-2017-17653 · Riverbed · Riverbed Rios
Published
2017-04-04
·
Updated
2019-10-03
·
CVE-2017-7307
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Riverbed RiOS versions prior to 9.0.1
Description
The issue makes it easier for physically proximate attackers to obtain root privileges and access decrypted data by replacing the /opt/tms/bin/cli file, due to improper restriction of shell access in single-user mode.
Recommendations
For versions prior to 9.0.1, update to version 9.0.1 or later to resolve the issue.
Fix
Incorrect Permission
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Riverbed Rios