CVE-2016-1420
Last modified
CVE-2016-1420 is a vulnerability of currently unknown severity. The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Application Infrastructure Controller | All versions |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(1e\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(1h\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(1k\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(1n\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(2j\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(2m\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(3f\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(3i\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(3k\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(3n\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(4h\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.0\(4o\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.1\(0.920a\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.1\(1j\) |
| Cisco | Application Policy Infrastructure Controller Firmware | 1.1\(3f\) |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-1420?
How severe is CVE-2016-1420?
How do I fix CVE-2016-1420?
Are you affected by CVE-2016-1420?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
