CVE-2020-3223

MEDIUM

Cisco IOS XE - Authenticated Arbitrary File Read via Web UI File Reference

Title source: llm
STIX 2.1

Description

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative privileges to read arbitrary files on the underlying filesystem of the device. The vulnerability is due to insufficient file scope limiting. An attacker could exploit this vulnerability by creating a specific file reference on the filesystem and then accessing it through the web UI. An exploit could allow the attacker to read arbitrary files from the underlying operating system's filesystem.

References (1)

Core 1
Core References

Scores

CVSS v3 4.9
EPSS 0.0019
EPSS Percentile 40.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-59
Status published
Products (15)
cisco/ios_xe 16.9.4
cisco/ios_xe 16.9.4c
cisco/ios_xe 16.11.1
cisco/ios_xe 16.11.1a
cisco/ios_xe 16.11.1b
cisco/ios_xe 16.11.1c
cisco/ios_xe 16.11.1s
cisco/ios_xe 16.11.2
cisco/ios_xe 16.12.1
cisco/ios_xe 16.12.1a
... and 5 more
Published Jun 03, 2020
Tracked Since Feb 18, 2026