Vulnerabilities > Cisco > Vedge 5000 Firmware

DATE CVE VULNERABILITY TITLE RISK
2018-07-18 CVE-2018-0345 Argument Injection or Modification vulnerability in Cisco products
A vulnerability in the configuration and management database of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary commands with the privileges of the vmanage user in the configuration management system of the affected software.
network
low complexity
cisco CWE-88
critical
9.0
2018-07-18 CVE-2018-0344 Command Injection vulnerability in Cisco products
A vulnerability in the vManage dashboard for the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject and execute arbitrary commands with vmanage user privileges on an affected system.
network
low complexity
cisco CWE-77
6.5
2018-07-18 CVE-2018-0343 Improper Privilege Management vulnerability in Cisco products
A vulnerability in the configuration and management service of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to execute arbitrary code with vmanage user privileges or cause a denial of service (DoS) condition on an affected system.
network
low complexity
cisco CWE-269
6.5
2018-07-18 CVE-2018-0342 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A vulnerability in the configuration and monitoring service of the Cisco SD-WAN Solution could allow an authenticated, local attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device.
local
low complexity
cisco CWE-119
7.2