← Back to browse · API

CVE-2022-20780

Severity
CRITICAL
CVSS
9.9
EPSS
0.11233
Risk score
43.53
CISA KEV
No
PoC
No
Published
2022-05-04
Modified
2024-11-06
First seen
2026-08-07
Aliases
EUVD-2022-26030, GHSA-66M4-PHC4-4X75
Products
Cisco:Cisco Enterprise NFV Infrastructure Software n/a
Sources
euvd EUVD-2022-26030

Description

Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from the guest virtual machine (VM) to the host machine, inject commands that execute at the root level, or leak system data from the host to the VM. For more information about these vulnerabilities, see the Details section of this advisory.

References