CVE-2020-3257

Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) that are running Cisco IOS Software could allow an attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cisco:ios:15.8\(3.0z\)m1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.9:*:*:*:*:*:*:*
OR cpe:2.3:h:cisco:1120_connected_grid_router:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:1240_connected_grid_router:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir809g-lte-ga-k9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir809g-lte-la-k9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir809g-lte-na-k9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir809g-lte-vz-k9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829-2lte-ea-ak9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829-2lte-ea-bk9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829-2lte-ea-ek9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-ga-ck9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-ga-ek9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-ga-sk9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-ga-zk9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-na-ak9:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:ir829gw-lte-vz-ak9:-:*:*:*:*:*:*:*

History

19 Oct 2021, 19:38

Type Values Removed Values Added
CWE CWE-20 CWE-119

Information

Published : 2020-06-03 18:15

Updated : 2024-02-04 21:00


NVD link : CVE-2020-3257

Mitre link : CVE-2020-3257

CVE.ORG link : CVE-2020-3257


JSON object : View

Products Affected

cisco

  • ir809g-lte-vz-k9
  • ir829gw-lte-ga-sk9
  • ir829gw-lte-ga-ek9
  • ir829gw-lte-na-ak9
  • ir829gw-lte-ga-ck9
  • ios
  • ir829-2lte-ea-ek9
  • 1240_connected_grid_router
  • ir809g-lte-ga-k9
  • ir809g-lte-na-k9
  • ir829gw-lte-ga-zk9
  • 1120_connected_grid_router
  • ir829-2lte-ea-bk9
  • ir829gw-lte-vz-ak9
  • ir809g-lte-la-k9
  • ir829-2lte-ea-ak9
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-20

Improper Input Validation