CVE-2025-20119

MEDIUM EPSS 0.8%
Published Feb 26, 20251y ago · Modified Jun 17, 20262w ago
5.7 CVSS 3.1
Medium
Find Similar
Published Feb 26, 2025 1y ago
Last Modified Jun 17, 2026 2w ago

Description

A vulnerability in the system file permission handling of Cisco APIC could allow an authenticated, local attacker to overwrite critical system files, which could cause a DoS condition. To exploit this vulnerability, the attacker must have valid administrative credentials. This vulnerability is due to a race condition with handling system files. An attacker could exploit this vulnerability by doing specific operations on the file system. A successful exploit could allow the attacker to overwrite system files, which could lead to the device being in an inconsistent state and cause a DoS condition.

CVSS Details

Base Score
5.7
Exploitability
0.5
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H
Attack Vector Local
Attack Complexity High
Privileges Required High
User Interaction None
Scope Unchanged
Confidentiality None
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
0.8% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

Weaknesses 1

CWE-362

Affected Products 128

VendorProductVersionRange
ciscoapplication_policy_infrastructure_controller3.2\(1l\)any
ciscoapplication_policy_infrastructure_controller3.2\(1m\)any
ciscoapplication_policy_infrastructure_controller3.2\(2l\)any
ciscoapplication_policy_infrastructure_controller3.2\(2o\)any
ciscoapplication_policy_infrastructure_controller3.2\(3i\)any
ciscoapplication_policy_infrastructure_controller3.2\(3j\)any
ciscoapplication_policy_infrastructure_controller3.2\(3n\)any
ciscoapplication_policy_infrastructure_controller3.2\(3o\)any
ciscoapplication_policy_infrastructure_controller3.2\(3r\)any
ciscoapplication_policy_infrastructure_controller3.2\(3s\)any
ciscoapplication_policy_infrastructure_controller3.2\(4d\)any
ciscoapplication_policy_infrastructure_controller3.2\(4e\)any
ciscoapplication_policy_infrastructure_controller3.2\(5d\)any
ciscoapplication_policy_infrastructure_controller3.2\(5e\)any
ciscoapplication_policy_infrastructure_controller3.2\(5f\)any
ciscoapplication_policy_infrastructure_controller3.2\(6i\)any
ciscoapplication_policy_infrastructure_controller3.2\(7f\)any
ciscoapplication_policy_infrastructure_controller3.2\(7k\)any
ciscoapplication_policy_infrastructure_controller3.2\(8d\)any
ciscoapplication_policy_infrastructure_controller3.2\(9b\)any
ciscoapplication_policy_infrastructure_controller3.2\(9f\)any
ciscoapplication_policy_infrastructure_controller3.2\(9h\)any
ciscoapplication_policy_infrastructure_controller3.2\(10e\)any
ciscoapplication_policy_infrastructure_controller3.2\(10f\)any
ciscoapplication_policy_infrastructure_controller3.2\(10g\)any
ciscoapplication_policy_infrastructure_controller3.2\(41d\)any
ciscoapplication_policy_infrastructure_controller4.0\(1h\)any
ciscoapplication_policy_infrastructure_controller4.0\(2c\)any
ciscoapplication_policy_infrastructure_controller4.0\(3c\)any
ciscoapplication_policy_infrastructure_controller4.0\(3d\)any
ciscoapplication_policy_infrastructure_controller4.1\(1a\)any
ciscoapplication_policy_infrastructure_controller4.1\(1i\)any
ciscoapplication_policy_infrastructure_controller4.1\(1j\)any
ciscoapplication_policy_infrastructure_controller4.1\(1k\)any
ciscoapplication_policy_infrastructure_controller4.1\(1l\)any
ciscoapplication_policy_infrastructure_controller4.1\(2g\)any
ciscoapplication_policy_infrastructure_controller4.1\(2m\)any
ciscoapplication_policy_infrastructure_controller4.1\(2o\)any
ciscoapplication_policy_infrastructure_controller4.1\(2s\)any
ciscoapplication_policy_infrastructure_controller4.1\(2u\)any
ciscoapplication_policy_infrastructure_controller4.1\(2w\)any
ciscoapplication_policy_infrastructure_controller4.1\(2x\)any
ciscoapplication_policy_infrastructure_controller4.2\(1g\)any
ciscoapplication_policy_infrastructure_controller4.2\(1i\)any
ciscoapplication_policy_infrastructure_controller4.2\(1j\)any
ciscoapplication_policy_infrastructure_controller4.2\(1l\)any
ciscoapplication_policy_infrastructure_controller4.2\(2e\)any
ciscoapplication_policy_infrastructure_controller4.2\(2f\)any
ciscoapplication_policy_infrastructure_controller4.2\(2g\)any
ciscoapplication_policy_infrastructure_controller4.2\(3j\)any
ciscoapplication_policy_infrastructure_controller4.2\(3l\)any
ciscoapplication_policy_infrastructure_controller4.2\(3n\)any
ciscoapplication_policy_infrastructure_controller4.2\(3q\)any
ciscoapplication_policy_infrastructure_controller4.2\(4i\)any
ciscoapplication_policy_infrastructure_controller4.2\(4k\)any
ciscoapplication_policy_infrastructure_controller4.2\(4o\)any
ciscoapplication_policy_infrastructure_controller4.2\(4p\)any
ciscoapplication_policy_infrastructure_controller4.2\(5k\)any
ciscoapplication_policy_infrastructure_controller4.2\(5l\)any
ciscoapplication_policy_infrastructure_controller4.2\(5n\)any
ciscoapplication_policy_infrastructure_controller4.2\(6d\)any
ciscoapplication_policy_infrastructure_controller4.2\(6g\)any
ciscoapplication_policy_infrastructure_controller4.2\(6h\)any
ciscoapplication_policy_infrastructure_controller4.2\(6l\)any
ciscoapplication_policy_infrastructure_controller4.2\(6o\)any
ciscoapplication_policy_infrastructure_controller4.2\(7f\)any
ciscoapplication_policy_infrastructure_controller4.2\(7l\)any
ciscoapplication_policy_infrastructure_controller4.2\(7q\)any
ciscoapplication_policy_infrastructure_controller4.2\(7r\)any
ciscoapplication_policy_infrastructure_controller4.2\(7s\)any
ciscoapplication_policy_infrastructure_controller4.2\(7t\)any
ciscoapplication_policy_infrastructure_controller4.2\(7u\)any
ciscoapplication_policy_infrastructure_controller4.2\(7v\)any
ciscoapplication_policy_infrastructure_controller4.2\(7w\)any
ciscoapplication_policy_infrastructure_controller5.0\(1k\)any
ciscoapplication_policy_infrastructure_controller5.0\(1l\)any
ciscoapplication_policy_infrastructure_controller5.0\(2e\)any
ciscoapplication_policy_infrastructure_controller5.0\(2h\)any
ciscoapplication_policy_infrastructure_controller5.1\(1h\)any
ciscoapplication_policy_infrastructure_controller5.1\(2e\)any
ciscoapplication_policy_infrastructure_controller5.1\(3e\)any
ciscoapplication_policy_infrastructure_controller5.1\(4c\)any
ciscoapplication_policy_infrastructure_controller5.2\(1g\)any
ciscoapplication_policy_infrastructure_controller5.2\(2e\)any
ciscoapplication_policy_infrastructure_controller5.2\(2f\)any
ciscoapplication_policy_infrastructure_controller5.2\(2g\)any
ciscoapplication_policy_infrastructure_controller5.2\(2h\)any
ciscoapplication_policy_infrastructure_controller5.2\(3e\)any
ciscoapplication_policy_infrastructure_controller5.2\(3f\)any
ciscoapplication_policy_infrastructure_controller5.2\(3g\)any
ciscoapplication_policy_infrastructure_controller5.2\(4d\)any
ciscoapplication_policy_infrastructure_controller5.2\(4e\)any
ciscoapplication_policy_infrastructure_controller5.2\(4f\)any
ciscoapplication_policy_infrastructure_controller5.2\(4h\)any
ciscoapplication_policy_infrastructure_controller5.2\(5c\)any
ciscoapplication_policy_infrastructure_controller5.2\(5d\)any
ciscoapplication_policy_infrastructure_controller5.2\(5e\)any
ciscoapplication_policy_infrastructure_controller5.2\(6e\)any
ciscoapplication_policy_infrastructure_controller5.2\(6g\)any
ciscoapplication_policy_infrastructure_controller5.2\(6h\)any
ciscoapplication_policy_infrastructure_controller5.2\(7f\)any
ciscoapplication_policy_infrastructure_controller5.2\(7g\)any
ciscoapplication_policy_infrastructure_controller5.2\(8d\)any
ciscoapplication_policy_infrastructure_controller5.2\(8e\)any
ciscoapplication_policy_infrastructure_controller5.2\(8f\)any
ciscoapplication_policy_infrastructure_controller5.2\(8g\)any
ciscoapplication_policy_infrastructure_controller5.2\(8h\)any
ciscoapplication_policy_infrastructure_controller5.2\(8i\)any
ciscoapplication_policy_infrastructure_controller5.3\(1d\)any
ciscoapplication_policy_infrastructure_controller5.3\(2a\)any
ciscoapplication_policy_infrastructure_controller5.3\(2b\)any
ciscoapplication_policy_infrastructure_controller5.3\(2c\)any
ciscoapplication_policy_infrastructure_controller5.3\(2d\)any
ciscoapplication_policy_infrastructure_controller5.3\(2e\)any
ciscoapplication_policy_infrastructure_controller6.0\(1g\)any
ciscoapplication_policy_infrastructure_controller6.0\(1j\)any
ciscoapplication_policy_infrastructure_controller6.0\(2h\)any
ciscoapplication_policy_infrastructure_controller6.0\(2j\)any
ciscoapplication_policy_infrastructure_controller6.0\(3d\)any
ciscoapplication_policy_infrastructure_controller6.0\(3e\)any
ciscoapplication_policy_infrastructure_controller6.0\(3g\)any
ciscoapplication_policy_infrastructure_controller6.0\(4c\)any
ciscoapplication_policy_infrastructure_controller6.0\(5h\)any
ciscoapplication_policy_infrastructure_controller6.0\(5j\)any
ciscoapplication_policy_infrastructure_controller6.0\(6c\)any
ciscoapplication_policy_infrastructure_controller6.0\(7e\)any
ciscoapplication_policy_infrastructure_controller6.0\(8d\)any
ciscoapplication_policy_infrastructure_controller6.1\(1f\)any

References 1

  • sec.cloudapps.cisco.com https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-apic-multi-vulns-9ummtg5
    Vendor Advisory

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.