Link following in Cisco IOS XE - CVE-2020-3223

 

Link following in Cisco IOS XE - CVE-2020-3223

Published: June 4, 2020


Vulnerability identifier: #VU28563
CSH Severity: Low
CVSS v4: 6.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-3223
CWE-ID: CWE-59
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to gain access to potentially sensitive information.

The vulnerability existd due to insufficient file scope limiting in the web-based user interface (web UI). A remote administrator can create a specific file reference on the filesystem, then access it through the web UI and read arbitrary files from the underlying operating system's filesystem.


Affected software

Cisco IOS XE

How to mitigate CVE-2020-3223

Install updates from vendor's website.

Cisco IOS XE - addressed in versions Amsterdam 17.1.1, Amsterdam 17.2.1, 16.9.5, 16.12.2, 16.12.2s, 17.1.0.66, 17.1.1, 17.2.0.3, 17.2.0.46, 17.2.1

External References

Related Security Bulletins