CVE-2015-6265
Published Aug 27, 2015
Last updated 8 years ago
Overview
- Description
- The CLI in Cisco Application Control Engine (ACE) 4700 A5 3.0 and earlier allows local users to bypass intended access restrictions, and read or write to files, by entering an unspecified CLI command with a crafted file as this command's input, aka Bug ID CSCur23662.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:application_control_engine_4700:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5CACF839-835D-44AD-BDA4-36B8262F9880", "versionEndIncluding": "a5_base_3.0" } ], "operator": "OR" } ] } ]