PT-2023-2826 · Cisco · Cisco Small Business Series Switches

Published

2023-05-17

·

Updated

2023-05-26

·

CVE-2023-20189

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cisco Small Business Series Switches (affected versions not specified)
Description The issue is related to a buffer overflow in the stack of the web interface management microprogram of Cisco Small Business Series Switches. It may allow a remote attacker to execute arbitrary code using a specially crafted request. The vulnerability is due to improper validation of requests sent to the web interface, which could also cause a denial of service (DoS) condition.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-02754
CVE-2023-20189

Affected Products

Cisco Small Business Series Switches