Vulnerabilities > Cisco > Vedge 100M Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-18 CVE-2018-0345 Argument Injection or Modification vulnerability in Cisco products
A vulnerability in the configuration and management database of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary commands with the privileges of the vmanage user in the configuration management system of the affected software.
network
low complexity
cisco CWE-88
8.8
2018-07-18 CVE-2018-0344 Command Injection vulnerability in Cisco products
A vulnerability in the vManage dashboard for the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject and execute arbitrary commands with vmanage user privileges on an affected system.
network
low complexity
cisco CWE-77
7.2
2018-07-18 CVE-2018-0343 Improper Privilege Management vulnerability in Cisco products
A vulnerability in the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary code with vmanage user privileges or cause a denial of service (DoS) condition on an affected system.
network
low complexity
cisco CWE-269
8.8