"Cisco Patches High-Severity Vulnerabilities in Network Operating System"
"Cisco Patches High-Severity Vulnerabilities in Network Operating System"
Cisco recently announced patches for eight vulnerabilities in the IOS XR network operating system, including fixes for six high-severity bugs. The most severe of the flaws is CVE-2024-20398 (CVSS score of 8.8), an insufficient validation of user arguments that IOS XR passes to specific CLI commands. Cisco noted that an attacker with a low-privileged account could exploit this vulnerability by using crafted commands at the prompt. A successful exploit could allow the attacker to elevate privileges to root.