CVE-2018-0394
Published: Jul 18, 2018
Modified: Nov 29, 2024
Description
A vulnerability in the web upload function of Cisco Cloud Services Platform 2100 could allow an authenticated, remote attacker to obtain restricted shell access on an affected system. The vulnerability is due to insufficient input validation of parameters passed to a specific function within the user interface. An attacker could exploit this vulnerability by injecting code into a function parameter. Cisco Bug IDs: CSCvi12935.
| Vendor | Product | Versions |
|---|---|---|
n/a | Cisco Cloud Services Platform 2100 unknown | affected Cisco Cloud Services Platform 2100 unknown |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now