Cisco IOS XR Software Privilege Escalation Vulnerability via CLI

Vulnerability

A vulnerability exists in the Command Line Interface (CLI) of Cisco IOS XR Software, allowing authenticated, local attackers to execute arbitrary commands as root on the underlying operating system of affected devices. This issue arises from inadequate validation of user arguments in specific CLI commands. Attackers with low-privileged accounts can exploit this vulnerability by sending crafted commands at the prompt, potentially leading to unauthorized privilege escalation and execution of arbitrary commands.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, enabling low-privileged users to execute arbitrary commands as root on the affected device's operating system.

Reproduction

The vulnerability can be reproduced by an authenticated, local user with a low-privileged account. The user can send crafted commands through the CLI that exploit the insufficient validation of user arguments, leading to privilege escalation and execution of arbitrary commands as root.

Remediation

Cisco has released free software updates to address this vulnerability. Customers with service contracts should obtain these updates through their usual channels. For information on specific fixed releases, consult the Cisco IOS XR Software Security Advisory.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
3.8
remediation
7.7
relevance
0.0
threat
1.6
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.