PT-2020-2791 · Cisco · Cisco 829+4

Published

2020-06-03

·

Updated

2021-10-26

·

CVE-2020-3199

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) running Cisco IOS Software (affected versions not specified)
Description The issue is related to insufficient input validation in the Cisco IOx application environment, which could allow a remote attacker to elevate privileges, execute arbitrary code, or cause a denial of service (DoS) condition on an affected device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02886
CVE-2020-3199

Affected Products

Cisco 1000 Series Connected Grid Routers
Cisco 809
Cisco 829
Cisco Ios
Cisco Iox