PoC Index

CVE-2022-20775

KEVHIGH 7.8EPSS 12.5%

Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit these vulnerabilities by running a malicious command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user.

CVSS v3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
12.47% chance of exploitation in the next 30 days, 96th percentile
CISA KEV
added 2026-02-25
Published
2022-09-30
Updated
2026-03-02

Proof-of-concept exploits (1)

References

Related