The diagnostics subsystem in the administrative web interface on Cisco Virtualization Experience (aka VXC) Client 6215 devices with firmware 11.2(27.4) allows local users to gain privileges for OS command execution via a crafted option value, aka Bug ID CSCug54412.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-06-17 03:59
Updated : 2016-12-07 10:12
NVD link : CVE-2015-4186
Mitre link : CVE-2015-4186
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
cisco
- virtualization_experience_client_6000_series_firmware