Command Injection Vulnerability in Cisco SD-WAN Solution's Tcpdump Utility
CVE-2018-0351
What is CVE-2018-0351?
A command injection vulnerability exists in the tcpdump utility of the Cisco SD-WAN Solution due to inadequate input validation. An authenticated local attacker could exploit this flaw by submitting specially crafted input to the tcpdump, resulting in the execution of arbitrary commands with root privileges. This vulnerability affects various Cisco SD-WAN products prior to Release 18.3.0. Attackers must first authenticate to the device to leverage this vulnerability, allowing them to potentially compromise system integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco SD-WAN Solution unknown Cisco SD-WAN Solution unknown
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved