CVE-2018-0434
HIGHCisco SD-WAN < 18.3.0 - Unauthenticated Sensitive Data Exposure via ZTP
Title source: llmDescription
A vulnerability in the Zero Touch Provisioning feature of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data by using an invalid certificate. The vulnerability is due to insufficient certificate validation by the affected software. An attacker could exploit this vulnerability by supplying a crafted certificate to an affected device. A successful exploit could allow the attacker to conduct man-in-the-middle attacks to decrypt confidential information on user connections to the affected software.
References (2)
Core 2
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180905-sd-wan-validation
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/105294
Scores
CVSS v3
7.4
EPSS
0.0084
EPSS Percentile
53.0%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-295
Status
published
Products (5)
cisco/vedge_1000_firmware
< 18.3.0
cisco/vedge_100_firmware
< 18.3.0
cisco/vedge_2000_firmware
< 18.3.0
cisco/vedge_5000_firmware
< 18.3.0
cisco/vmanage_network_management_system
Published
Oct 05, 2018
Tracked Since
Feb 18, 2026