Command injection in Cisco IOS XR - CVE-2017-6719
Published: June 22, 2017
Cisco IOS XR
Detailed vulnerability description
The vulnerability exists in the CLI of Cisco IOS XR Software due to insufficient input validation. A local attacker can send a specially crafted input to a command in a specific group and execute arbitrary commands with root privileges.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.