← Back to browse · API

CVE-2022-20779

Severity
CRITICAL
CVSS
9.9
EPSS
0.10464
Risk score
43.26
CISA KEV
No
PoC
No
Published
2022-05-04
Modified
2024-11-06
First seen
2026-08-07
Aliases
EUVD-2022-26029, GHSA-VQ85-QC7X-6FF4
Products
Cisco:Cisco Enterprise NFV Infrastructure Software n/a
Sources
euvd EUVD-2022-26029

Description

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the host to the VM. For more information about these vulnerabilities, see the Details section of this advisory.

References