CVE-2022-20655

HIGH

Cisco IOS XR Software - Authenticated OS Command Injection via ConfD CLI Process Argument

Title source: llm
STIX 2.1

Description

A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack. The vulnerability is due to insufficient validation of a process argument on an affected device. An attacker could exploit this vulnerability by injecting commands during the execution of this process. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privilege level of ConfD, which is commonly root.

Scores

CVSS v3 8.8
EPSS 0.0040
EPSS Percentile 60.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-78
Status published
Products (50)
Cisco/Cisco Carrier Packet Transport 1.0
Cisco/Cisco Carrier Packet Transport 1.0.2
Cisco/Cisco Carrier Packet Transport 1.1
Cisco/Cisco Carrier Packet Transport 1.1.1
Cisco/Cisco Carrier Packet Transport 1.1.2
Cisco/Cisco Carrier Packet Transport 1.2
Cisco/Cisco Carrier Packet Transport 1.4.0
Cisco/Cisco Carrier Packet Transport 10.8.0
Cisco/Cisco Carrier Packet Transport 12.1.0
Cisco/Cisco Carrier Packet Transport 2.0
... and 40 more
Published Nov 15, 2024
Tracked Since Feb 18, 2026