![](/assets/img/cve_300x82_sin_bg.png)
CVE-2016-1420
https://notcve.org/view.php?id=CVE-2016-1420
10 Jun 2016 — The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347. El componente de instalación en dispositivos Cisco Application Policy Infrastructure Controller (APIC) con software en versiones anteriores a 1.3(2f) no maneja correctamente archivos binarios, lo que permite a usuarios locales obtener acceso root a través de vectores... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160609-apic •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2015-4235
https://notcve.org/view.php?id=CVE-2015-4235
24 Jul 2015 — Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3o) and 1.1 before 1.1(1j) and Nexus 9000 ACI devices with software before 11.0(4o) and 11.1 before 11.1(1j) do not properly restrict access to the APIC filesystem, which allows remote authenticated users to obtain root privileges via unspecified use of the APIC cluster-management configuration feature, aka Bug IDs CSCuu72094 and CSCuv11991. Vulnerabilidad en dispositivos Cisco Application Policy Infrastructure Contro... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150722-apic • CWE-264: Permissions, Privileges, and Access Controls •