Cisco Bug: CSCtd16517 - Linux cmds can be executed using "clear users locked-out username" CLI
Aug 06, 2018
- Cisco Wide Area Application Services (WAAS) Appliances
Known Affected Releases
<B>Symptom:</B> A Linux command can be injected by embedding a command in a regular WAAS command-line interface (CLI) command. <B>Conditions:</B> An authenticated user is required.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases