Remote Code Execution Vulnerability in Cisco Prime Network Analysis Module
CVE-2016-1391

8.8HIGH

Key Information:

Summary

A vulnerability exists in the Cisco Prime Network Analysis Module and Prime Virtual Network Analysis Module that allows remote authenticated users to execute arbitrary operating system commands through specially crafted HTTP requests. This issue can potentially compromise the affected system, allowing unauthorized control over the underlying operating system, thus posing significant security risks. Users and administrators are advised to apply the necessary patches to mitigate potential threats.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.