- Description
- The diagnostic module in the firmware on Cisco Virtualization Experience Client 6000 devices allows local users to bypass intended access restrictions and execute arbitrary commands via unspecified vectors, aka Bug ID CSCug68407.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 10
- Exploitability score
- 3.1
- Vector string
- AV:L/AC:L/Au:S/C:C/I:C/A:C
- nvd@nist.gov
- CWE-20
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:cisco:virtualization_experience_client_6000:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0BBC9579-70A3-4D38-A65A-10FDE5D35099"
},
{
"criteria": "cpe:2.3:o:cisco:virtualization_experience_client_6000_series_firmware:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "47B6132B-C2FA-4003-AB42-09CB174E4856"
}
],
"operator": "OR"
}
]
}
]