CVE-2023-20234
 
Severity Score
6.0
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to create a file or overwrite any file on the filesystem of an affected device, including system files.
The vulnerability occurs because there is no validation of parameters when a specific CLI command is used. An attacker could exploit this vulnerability by authenticating to an affected device and using the command at the CLI. A successful exploit could allow the attacker to overwrite any file on the disk of the affected device, including system files. The attacker must have valid administrative credentials on the affected device to exploit this vulnerability.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-10-27 CVE Reserved
- 2023-08-23 CVE Published
- 2023-08-24 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-73: External Control of File Name or Path
- CWE-732: Incorrect Permission Assignment for Critical Resource
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 1000 Search vendor "Cisco" for product "Firepower 1000" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 1010 Search vendor "Cisco" for product "Firepower 1010" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 1020 Search vendor "Cisco" for product "Firepower 1020" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 1030 Search vendor "Cisco" for product "Firepower 1030" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 1040 Search vendor "Cisco" for product "Firepower 1040" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 2100 Search vendor "Cisco" for product "Firepower 2100" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 2110 Search vendor "Cisco" for product "Firepower 2110" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 2120 Search vendor "Cisco" for product "Firepower 2120" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 2130 Search vendor "Cisco" for product "Firepower 2130" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 2140 Search vendor "Cisco" for product "Firepower 2140" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4100 Search vendor "Cisco" for product "Firepower 4100" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4110 Search vendor "Cisco" for product "Firepower 4110" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4110 Next-generation Firewall Search vendor "Cisco" for product "Firepower 4110 Next-generation Firewall" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4112 Search vendor "Cisco" for product "Firepower 4112" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4115 Search vendor "Cisco" for product "Firepower 4115" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4120 Search vendor "Cisco" for product "Firepower 4120" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4120 Next-generation Firewall Search vendor "Cisco" for product "Firepower 4120 Next-generation Firewall" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4125 Search vendor "Cisco" for product "Firepower 4125" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4140 Search vendor "Cisco" for product "Firepower 4140" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4140 Next-generation Firewall Search vendor "Cisco" for product "Firepower 4140 Next-generation Firewall" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4145 Search vendor "Cisco" for product "Firepower 4145" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4150 Search vendor "Cisco" for product "Firepower 4150" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 4150 Next-generation Firewall Search vendor "Cisco" for product "Firepower 4150 Next-generation Firewall" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Search vendor "Cisco" for product "Firepower 9300" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Security Appliance Search vendor "Cisco" for product "Firepower 9300 Security Appliance" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-24 Search vendor "Cisco" for product "Firepower 9300 Sm-24" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-36 Search vendor "Cisco" for product "Firepower 9300 Sm-36" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-40 Search vendor "Cisco" for product "Firepower 9300 Sm-40" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-44 Search vendor "Cisco" for product "Firepower 9300 Sm-44" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-44 X 3 Search vendor "Cisco" for product "Firepower 9300 Sm-44 X 3" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-48 Search vendor "Cisco" for product "Firepower 9300 Sm-48" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-56 Search vendor "Cisco" for product "Firepower 9300 Sm-56" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 Sm-56 X 3 Search vendor "Cisco" for product "Firepower 9300 Sm-56 X 3" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 With 1 Sm-24 Module Search vendor "Cisco" for product "Firepower 9300 With 1 Sm-24 Module" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 With 1 Sm-36 Module Search vendor "Cisco" for product "Firepower 9300 With 1 Sm-36 Module" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 With 1 Sm-44 Module Search vendor "Cisco" for product "Firepower 9300 With 1 Sm-44 Module" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Firepower 9300 With 3 Sm-44 Module Search vendor "Cisco" for product "Firepower 9300 With 3 Sm-44 Module" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Secure Firewall 3105 Search vendor "Cisco" for product "Secure Firewall 3105" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Secure Firewall 3110 Search vendor "Cisco" for product "Secure Firewall 3110" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Secure Firewall 3120 Search vendor "Cisco" for product "Secure Firewall 3120" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Secure Firewall 3130 Search vendor "Cisco" for product "Secure Firewall 3130" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Firepower Extensible Operating System Search vendor "Cisco" for product "Firepower Extensible Operating System" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Secure Firewall 3140 Search vendor "Cisco" for product "Secure Firewall 3140" | - | - |
Safe
|