Vulnerability Bulletins

Cisco Prime Network Analysis Module Local Command Injection Vulnerability

   
Affected software Cisco
 
A vulnerability in the command-line interface (CLI) of Cisco Prime Network Analysis Module (NAM) and Cisco Prime Virtual Network Analysis Module (vNAM) could allow a local, authenticated attacker to execute arbitrary commands on the host operating system with elevated privileges.The vulnerability is due to insufficient sanitization of user-supplied input that is passed to a specific command before the input is used in subsequent operations. An attacker could exploit this vulnerability by

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160601-prime1?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Prime%20Network%20Analysis%20Module%20Local%20Command%20Injection%2