Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to elevate privileges to the level of an Administrator user on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-webui-priv-esc-K8zvEWM | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-09-24 11:15
Updated : 2021-07-13 10:53
NVD link : CVE-2020-3141
Mitre link : CVE-2020-3141
JSON object : View
CWE
Products Affected
cisco
- catalyst_c9300l-48p-4x
- catalyst_c9300-48p
- catalyst_c9300l-24t-4g
- ws-c3650-24ps
- catalyst_c9200-48t
- ws-c3650-12x48uz
- catalyst_c9500-48y4c
- catalyst_c9200l-48t-4x
- isr_1111x-8p
- isr_1100-8p
- isr1100-6g
- asr_1006
- catalyst_c9300-24t
- ws-c3650-24pdm
- asr1002-x-ws
- ws-c3850-48t
- asr_1001
- asr_1000-x
- catalyst_c9300l-48p-4g
- ws-c3650-24td
- asr1001-x-rf
- isr_1100-4p
- ws-c3650-48ps
- catalyst_c9300-48s
- catalyst_c9300-24p
- catalyst_c9500-24q
- asr1002-hx
- catalyst_c9300l-24t-4x
- isr_1101
- catalyst_c9200l-24pxg-4x
- catalyst_9800-l-f
- catalyst_9800-80
- catalyst_c9200l-24p-4g
- ws-c3850-48f
- catalyst_c9500-32qc
- isr1100-4gltegb
- catalyst_c9500-32c
- asr1002-hx-rf
- catalyst_c9500-24y4c
- isr1100-4gltena
- catalyst_c9200l-48p-4x
- ws-c3850-48u
- catalyst_c9200l-24t-4g
- ws-c3650-48fqm
- catalyst_c9200-24t
- catalyst_9800-cl
- catalyst_c9200l-48pxg-2y
- catalyst_c9300-48uxm
- catalyst_c9300-24ux
- catalyst_9800-l
- ws-c3650-48fd
- integrated_services_router_4331
- catalyst_9800-l-c
- catalyst_c9300l-24p-4g
- catalyst_9800-40
- catalyst_c9200-24p
- catalyst_c9300-48u
- catalyst_c9200l-24t-4x
- asr1002-x-rf
- isr_1109-4p
- catalyst_c9300-48t
- isr_111x
- ws-c3850-12xs
- asr_1002-x
- catalyst_c9300-24u
- catalyst_c9300-48un
- ws-c3850-24u
- csr_1000v
- integrated_services_router_4451
- catalyst_c9500-40x
- catalyst_c9300l-48t-4g
- ws-c3850-48xs
- ws-c3650-24ts
- integrated_services_router_4461
- catalyst_c9200l-24p-4x
- catalyst_c9300-24s
- asr1001-x-ws
- catalyst_c9200l-48t-4g
- ws-c3650-48td
- ws-c3650-12x48uq
- asr1002-hx-ws
- asr_1013
- ws-c3850-24p
- catalyst_c9500-16x
- ws-c3650-48tq
- ws-c3650-24pd
- ws-c3850-48p
- isr1100
- catalyst_c9200l-24pxg-2y
- isr_1101-4p
- integrated_services_router_4221
- ws-c3850
- asr1001-hx
- ws-c3650-48fq
- isr1100-4g
- isr_1109
- catalyst_c9407r
- isr1100-lte
- ws-c3650-12x48ur
- isr_1111x
- ws-c3850-24xu
- integrated_services_router_4431
- ws-c3850-12x48u
- catalyst_c9404r
- isr_1109-2p
- ws-c3650-48pq
- asr_1002
- ios_xe
- ws-c3850-12s
- catalyst_c9300l-48t-4x
- ws-c3650-8x24uq
- ws-c3650-48ts
- asr_1004
- ws-c3850-24s
- ws-c3650-48pd
- isr_1160
- isr_1120
- ws-c3850-24xs
- ws-c3650-48fs
- ws-c3850-24t
- catalyst_c9300l-24p-4x
- catalyst_c9200-48p
- asr1001-hx-rf
- catalyst_c9500-12q
- catalyst_c9410r
- asr_1001-x
- catalyst_c9200l-48pxg-4x
- catalyst_c9200l-48p-4g