Cisco Application Policy Infrastructure Controller Unauthorized File Access Vulnerability
Admin-authenticated attackers can read sensitive Cisco APIC files, including keys usable for root access.
Cisco disclosed an unauthorized file-access flaw in the export policies functionality of Application Policy Infrastructure Controller. An authenticated remote attacker with valid administrative credentials can submit crafted UI values and read sensitive files from the underlying filesystem, including key materials that could enable root privilege escalation. The issue is caused by insufficient access control to file-system resources. The text does not report active exploitation.
- Requires valid administrative credentials
- Crafted UI values expose sensitive filesystem files
- Stolen key material may enable root escalation
- No in-the-wild exploitation stated
A vulnerability in the export policies functionality of Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to access sensitive files on an affected device. To exploit this vulnerability, the attacker must have valid administrative credentials. This vulnerability is due to insufficient access control to file system resources. An attacker could exploit this vulnerability by submitting crafted values in specific UI fields. A successful exploit could allow the attacker to access sensitive files from the underlying file system of an affected device, including key materials that could be used to elevate privileges to root on the affected APIC…
This source does not provide full text. Read it at sec.cloudapps.cisco.com.