Remote Command Injection Vulnerability in Cisco SD-WAN Solution
CVE-2018-0350
What is CVE-2018-0350?
A command injection vulnerability in the VPN subsystem configuration of the Cisco SD-WAN Solution allows authenticated remote attackers to inject arbitrary commands executed with root privileges. The issue stems from inadequate input validation, enabling attackers to exploit the affected parameter by authenticating to the device and submitting crafted inputs through a web interface. Successful exploitation can lead to the execution of commands with elevated privileges, posing significant security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco SD-WAN Solution unknown Cisco SD-WAN Solution unknown
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved