Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
BID:66309
Info
Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
| Bugtraq ID: | 66309 |
| Class: | Unknown |
| CVE: |
CVE-2014-2119 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 19 2014 12:00AM |
| Updated: | Mar 19 2014 12:00AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
Cisco AsyncOS Software is prone to a remote code-execution vulnerability.
An attacker can leverage this issue to execute arbitrary code with root privileges. Failed exploit attempts will likely result in denial-of-service conditions.
This issue is tracked by Cisco BugId's CSCug79377, and CSCug80118.
Cisco AsyncOS Software is prone to a remote code-execution vulnerability.
An attacker can leverage this issue to execute arbitrary code with root privileges. Failed exploit attempts will likely result in denial-of-service conditions.
This issue is tracked by Cisco BugId's CSCug79377, and CSCug80118.
Exploit / POC
Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco AsyncOS Software 'Safelist/Blocklist (SLBL)' Function Remote Code Execution Vulnerability
References:
References:
- Cisco Homepage (Cisco )