cve entity

CVE-2020-3118

1 source-linked records in the current knowledge graph.

high

CVE-2020-3118: Cisco IOS XR Software Discovery Protocol Format String Vulnerability

Cisco IOS XR improperly validates string input from certain fields in Cisco Discovery Protocol messages. Exploitation could allow an unauthenticated, adjacent attacker to execute code with administrative privileges or cause a reload on an affected device. Required action: Apply updates per vendor instructions.

CVE-2020-3118EPSS 11.7%CiscoIOS XR
CISA KEV ↗ · unattributed attribution