A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, local attacker to overwrite arbitrary files in the virtual instance that is running on the affected device. The vulnerability is due to insufficient path restriction enforcement. An attacker could exploit this vulnerability by including a crafted file in an application package. An exploit could allow the attacker to overwrite files.
Metrics
Affected Vendors & Products
References
History
Fri, 15 Nov 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: cisco
Published: 2020-06-03T17:55:59.024823Z
Updated: 2024-11-15T17:11:36.744Z
Reserved: 2019-12-12T00:00:00
Link: CVE-2020-3237

Updated: 2024-08-04T07:30:58.157Z

Status : Modified
Published: 2020-06-03T18:15:21.573
Modified: 2024-11-21T05:30:37.880
Link: CVE-2020-3237

No data.