Vulnerability Name: | CVE-2020-3257 (CCN-182898) | ||||||||||||
Assigned: | 2019-12-12 | ||||||||||||
Published: | 2020-06-03 | ||||||||||||
Updated: | 2021-10-19 | ||||||||||||
Summary: | Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) that are running Cisco IOS Software could allow an attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. | ||||||||||||
CVSS v3 Severity: | 8.1 High (CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H) 7.1 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H/E:U/RL:O/RC:C)
6.8 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 4.8 Medium (CVSS v2 Vector: AV:A/AC:L/Au:N/C:N/I:P/A:P)
| ||||||||||||
Vulnerability Type: | CWE-119 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2020-3257 Source: XF Type: UNKNOWN cisco-cve20203257-code-exec(182898) Source: CCN Type: Cisco Security Advisory cisco-sa-ios-iot-gos-vuln-s9qS8kYL Cisco IOx Application Environment for IOS Software for Cisco Industrial Routers Vulnerabilities Source: CISCO Type: Patch, Vendor Advisory 20200603 Cisco IOx Application Environment for IOS Software for Cisco Industrial Routers Vulnerabilities | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |