CVE-2018-0434

HIGH

Cisco SD-WAN < 18.3.0 - Unauthenticated Sensitive Data Exposure via ZTP

Title source: llm
STIX 2.1

Description

A vulnerability in the Zero Touch Provisioning feature of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data by using an invalid certificate. The vulnerability is due to insufficient certificate validation by the affected software. An attacker could exploit this vulnerability by supplying a crafted certificate to an affected device. A successful exploit could allow the attacker to conduct man-in-the-middle attacks to decrypt confidential information on user connections to the affected software.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/105294

Scores

CVSS v3 7.4
EPSS 0.0084
EPSS Percentile 53.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-295
Status published
Products (5)
cisco/vedge_1000_firmware < 18.3.0
cisco/vedge_100_firmware < 18.3.0
cisco/vedge_2000_firmware < 18.3.0
cisco/vedge_5000_firmware < 18.3.0
cisco/vmanage_network_management_system
Published Oct 05, 2018
Tracked Since Feb 18, 2026