Versio.io

CVE-2022-20821

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 26-05-2022 04:15
Last modified: - 07-06-2022 06:51
Total changes: - 2

Description

A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi container. This vulnerability exists because the health check RPM opens TCP port 6379 by default upon activation. An attacker could exploit this vulnerability by connecting to the Redis instance on the open port. A successful exploit could allow the attacker to write to the Redis in-memory database, write arbitrary files to the container filesystem, and retrieve information about the Redis database. Given the configuration of the sandboxed container that the Redis instance runs in, a remote attacker would be unable to execute remote code or abuse the integrity of the Cisco IOS XR Software host system.

Common Vulnerability Scoring System (CVSS)

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Low
Attack complexity
Network
Attack vector
None
Availability
Low
Confidentiality
Low
Integrity
None
Privileges required
Unchanged
Scope
None
User interaction
6.5
Base score
3.9
2.5
Exploitability score
Impact score
 

Verification logic

AND
OR
vendor=cisco AND product=ios_xr AND version=-
OR
vendor=cisco AND product=ncs_1002 AND version=-
vendor=cisco AND product=ncs_1004 AND version=-
vendor=cisco AND product=ncs_1001 AND version=-
vendor=cisco AND product=ncs-55a2-mod-s AND version=-
vendor=cisco AND product=ncs-55a2-mod-hd-s AND version=-
vendor=cisco AND product=ncs-55a2-mod-hx-s AND version=-
vendor=cisco AND product=ncs-55a2-mod-se-s AND version=-
vendor=cisco AND product=ncs-55a2-mod-se-h-s AND version=-
vendor=cisco AND product=ncs-55a1-24h AND version=-
vendor=cisco AND product=ncs-55a1-36h-s AND version=-
vendor=cisco AND product=8201 AND version=-
vendor=cisco AND product=8202 AND version=-
vendor=cisco AND product=8208 AND version=-
vendor=cisco AND product=8212 AND version=-
vendor=cisco AND product=8218 AND version=-
vendor=cisco AND product=ncs-55a1-24q6h-s AND version=-
vendor=cisco AND product=ncs-55a1-36h-se AND version=-
vendor=cisco AND product=ncs-55a1-36h-se-s AND version=-
vendor=cisco AND product=ncs_5001 AND version=-
vendor=cisco AND product=ncs_5002 AND version=-
vendor=cisco AND product=ncs_5501-se AND version=-
vendor=cisco AND product=ncs_5502-se AND version=-
vendor=cisco AND product=ncs_5504 AND version=-
vendor=cisco AND product=ncs_5508 AND version=-
vendor=cisco AND product=ncs_5516 AND version=-
vendor=cisco AND product=ncs_55a1 AND version=-
vendor=cisco AND product=ncs_55a2 AND version=-
 

Reference

 


Keywords

NVD

 

CVE-2022-20821

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.