CVE-2018-0123
Last modified
CVE-2018-0123 is a vulnerability of currently unknown severity. A Path Traversal vulnerability in the diagnostic shell for Cisco IOS and IOS XE Software could allow an authenticated, local attacker to use certain diagnostic shell commands that can overwrite system files. These system files may be sensitive and should not be able to be overwritten by a user of the diagnostic shell. EPSS estimates a 0.41% chance of exploitation in the next 30 days.
Description
A Path Traversal vulnerability in the diagnostic shell for Cisco IOS and IOS XE Software could allow an authenticated, local attacker to use certain diagnostic shell commands that can overwrite system files. These system files may be sensitive and should not be able to be overwritten by a user of the diagnostic shell. The vulnerability is due to lack of proper input validation for certain diagnostic shell commands. An attacker could exploit this vulnerability by authenticating to the device, entering the diagnostic shell, and providing crafted user input to commands at the local diagnostic shell CLI. Successful exploitation could allow the attacker to overwrite system files that should be restricted. Cisco Bug IDs: CSCvg41950.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 16.7\(1\) |
| Cisco | Ios Xe | All versions |
References
- http://www.securityfocus.com/bid/102967Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1040346Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/102967Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1040346Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-0123?
How severe is CVE-2018-0123?
How do I fix CVE-2018-0123?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-0117A vulnerability in the ingress packet processing functionali…
- CVE-2018-0118A vulnerability in the web-based management interface of Cis…
- CVE-2018-0119A vulnerability in certain authentication controls in the ac…
- CVE-2018-0120A vulnerability in the web framework of Cisco Unified Commun…
- CVE-2018-0121A vulnerability in the authentication functionality of the w…
- CVE-2018-0122A vulnerability in the CLI of the Cisco StarOS operating sys…4.4
- CVE-2018-0124A vulnerability in Cisco Unified Communications Domain Manag…
- CVE-2018-0125A vulnerability in the web interface of the Cisco RV132W ADS…9.8
- CVE-2018-0127A vulnerability in the web interface of Cisco RV132W ADSL2+ …9.8
- CVE-2018-0128A vulnerability in the web-based management interface of Cis…
- CVE-2018-0129A vulnerability in the web-based management interface of Cis…
- CVE-2018-0130A vulnerability in the use of JSON web tokens by the web-bas…
Are you affected by CVE-2018-0123?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
