Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190807-nfv-read | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2019-08-08 08:15
Updated : 2020-10-16 14:44
NVD link : CVE-2019-1960
Mitre link : CVE-2019-1960
JSON object : View
Products Affected
cisco
- enterprise_network_function_virtualization_infrastructure
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')