{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-20T19:35:04.462","vulnerabilities":[{"cve":{"id":"CVE-2020-3115","sourceIdentifier":"psirt@cisco.com","published":"2020-01-26T05:15:17.193","lastModified":"2024-11-21T05:30:21.387","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A vulnerability in the CLI of the Cisco SD-WAN Solution vManage software could allow an authenticated, local attacker to elevate privileges to root-level privileges on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted file to the affected system. An exploit could allow the attacker to elevate privileges to root-level privileges."},{"lang":"es","value":"Una vulnerabilidad en la CLI del software de Cisco SD-WAN Solution vManage, podría permitir a un atacante local autenticado elevar privilegios a privilegios de nivel root en el sistema operativo subyacente. La vulnerabilidad es debido a una comprobación de entrada insuficiente. Un atacante podría explotar esta vulnerabilidad mediante el envío de un archivo diseñado hacia el sistema afectado. Un explotación podría permitir al atacante elevar privilegios a privilegios de nivel root."}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.0,"impactScore":6.0}],"cvssMetricV30":[{"source":"psirt@cisco.com","type":"Secondary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.0,"impactScore":6.0}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"psirt@cisco.com","type":"Secondary","description":[{"lang":"en","value":"CWE-264"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-269"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sd-wan_firmware:18.4.1:*:*:*:*:*:*:*","matchCriteriaId":"0015FD1E-1BCD-40AB-8C21-264AB9F6E123"},{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sd-wan_firmware:19.1.0:*:*:*:*:*:*:*","matchCriteriaId":"7797A89F-B23B-424B-B2F7-6165C5C616FD"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge-100:-:*:*:*:*:*:*:*","matchCriteriaId":"5D71E4AF-6E91-4493-A591-4D056D0E59C1"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge-1000:-:*:*:*:*:*:*:*","matchCriteriaId":"F718A859-BCDB-4DD0-819D-60ABE710F0A9"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge-100b:-:*:*:*:*:*:*:*","matchCriteriaId":"07E7851F-3E72-4677-B907-CF777EBED2FF"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge-2000:-:*:*:*:*:*:*:*","matchCriteriaId":"52EEF288-492C-4CE6-A082-631005C5E711"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge-5000:-:*:*:*:*:*:*:*","matchCriteriaId":"C0C5E2C9-7D4B-405C-93DD-33DF265131E2"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge_100m:-:*:*:*:*:*:*:*","matchCriteriaId":"36973815-F46D-4ADA-B9DF-BCB70AC60BD3"},{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:vedge_100wm:-:*:*:*:*:*:*:*","matchCriteriaId":"061A302C-8D35-4E80-93DA-916DA7E90C06"}]}]}],"references":[{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-sdwan-priv-esc","source":"psirt@cisco.com","tags":["Vendor Advisory"]},{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-sdwan-priv-esc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}