OS Command Injection in Cisco Systems, Inc products - CVE-2023-20076

 

OS Command Injection in Cisco Systems, Inc products - CVE-2023-20076

Published: February 1, 2023


Vulnerability identifier: #VU71744
CSH Severity: Low
CVSS v4: 8.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-20076
CWE-ID: CWE-78
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to execute arbitrary shell commands on the target system.

The vulnerability exists due to improper input validation in the Cisco IOx application hosting environment when parsing parameters passed in for activation of an application. A remote authenticated user can pass specially crafted data and execute arbitrary OS commands as root on the underlying host system.


Affected software

Catalyst 9400 Series Switches
Catalyst IE9300 Rugged Series
Catalyst IE3400 Rugged Series
Catalyst IE3400 Heavy Duty Series
Catalyst IE3300 Rugged Series
Catalyst IE3200 Rugged Series
Catalyst 9800 Series Wireless Controllers
Catalyst 9600 Series Switches
Catalyst 9500H Series Switches
Catalyst 9500 Series Switches
Catalyst 9300 Series Switches
Catalyst 9200 Series Switches
Catalyst 8500L Series Edge Platforms
Catalyst 8300 Series Edge Universal CPE
Catalyst 8300 Series Edge Platforms
Catalyst 8200 Series Edge Platforms
Catalyst 8000V Edge Software
Catalyst 3850 Series Switches
IR510 WPAN Industrial Routers
IC3000 Industrial Compute Gateway
Catalyst ESS9300 Embedded Series Switch
Catalyst Cellular Gateways
Catalyst 8500 Series Edge Platforms
Catalyst 8200 Series Edge uCPE
800 Series Industrial Integrated Services Routers
CGR1000 Compute Modules

How to mitigate CVE-2023-20076

Install updates from vendor's website.

IC3000 Industrial Compute Gateway - update to 1.2.1
800 Series Industrial Integrated Services Routers - update to 15.9(3)M7

External References

Related Security Bulletins