A vulnerability in Cisco CX Cloud Agent of could allow an...
Moderate severity
Unreviewed
Published
Jan 20, 2023
to the GitHub Advisory Database
•
Updated Feb 3, 2024
Description
Published by the National Vulnerability Database
Jan 20, 2023
Published to the GitHub Advisory Database
Jan 20, 2023
Last updated
Feb 3, 2024
A vulnerability in Cisco CX Cloud Agent of could allow an authenticated, local attacker to elevate their privileges. This vulnerability is due to insecure file permissions. An attacker could exploit this vulnerability by calling the script with sudo. A successful exploit could allow the attacker to take complete control of the affected device.
References