Rewterz Threat Advisory – Multiple Cisco Products Vulnerabilities
February 23, 2023Rewterz Threat Alert – PatchWork APT Group – Active IOCs
February 23, 2023Rewterz Threat Advisory – Multiple Cisco Products Vulnerabilities
February 23, 2023Rewterz Threat Alert – PatchWork APT Group – Active IOCs
February 23, 2023Severity
Medium
Analysis Summary
CVE-2023-20016 CVSS:6.3
Cisco FXOS Software and UCS Manager Software could allow a local attacker to obtain sensitive information, caused by a flaw in the encryption method used for the backup function. By sending a specially-crafted HTTP request, an attacker could exploit this vulnerability to obtain sensitive information stored in full state and configuration backup files, and use this information to launch further attacks against the affected system.
CVE-2023-20050 CVSS:4.4
Cisco NX-OS Software could allow a local authenticated attacker to execute arbitrary commands on the system, caused by improper validation of arguments that are passed to specific CLI commands. By sending a specially-crafted input as the argument, an attacker could exploit this vulnerability to execute arbitrary commands on the underlying operating system with the privileges of the currently logged-in user.
CVE-2023-20015 CVSS:6
Cisco Firepower 4100, 9300 Security Appliances, and UCS Fabric Interconnects could allow a local authenticated attacker to execute arbitrary commands on the system, caused by improper input validation of commands supplied by the user. By sending a specially-crafted input, an attacker could exploit this vulnerability to execute arbitrary commands on the underlying operating system with root-level privileges.
Impact
- Information Disclosure
- Command Execution
Indicators Of Compromise
CVE
- CVE-2023-20016
- CVE-2023-20050
- CVE-2023-20015
Affected Vendors
Cisco
Affected Products
- Cisco Firepower 9300 Security Appliances
- Cisco UCS 6200 Series Fabric Interconnects
- Cisco UCS 6300 Series Fabric Interconnects
- Cisco FXOS Software
- Cisco UCS 6400 Series Fabric Interconnects
- Cisco Firepower 4100 Series
- Cisco UCS Manager software
- Cisco UCS 6500 Series Fabric Interconnects
- Cisco Nexus 3000 Series Switches
- Cisco MDS 9000 Series Multilayer Switches
- Cisco Nexus 6000 Series Switches
- Cisco Nexus 7000 Series Switches
- Cisco Nexus 5500 Platform Switches
- Cisco Nexus 5600 Platform Switches
- Cisco NX-OS Software
- Cisco Nexus 9000 Series Switches in standalone NX-OS mode
- Cisco Nexus 1000V Switch for Microsoft Hyper-V
- Cisco Nexus 1000V Switch for VMware vSphere
- Cisco Nexus 1000 Virtual Edge for VMware vSphere
Remediation
Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.