CVE-2023-20103 Information
Apr 06, 2023
cve
Description
A vulnerability in Cisco Secure Network Analytics could allow an authenticated remote attacker to execute arbitrary code as a root user on an affected device. This vulnerability is due to insufficient validation of user input to the web interface. An attacker could exploit this vulnerability by uploading a crafted file to an affected device. A successful exploit could allow the attacker to execute code on the affected device. To exploit this vulnerability an attacker would need to have valid Administrator credentials on the affected device.