CVE-2019-1960
Executive Summary
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) enable an authenticated local attacker to read arbitrary files on the underlying operating system, potentially exposing sensitive data and facilitating further compromise. The flaw does not require network access and can be exploited by users with local credentials, making it a significant risk for devices running affected NFVIS versions.
Authoritative CVE Metadata - CVSS Base Score: 4.4 (MEDIUM) - Published: 2019-08-08T08:15:12.833 - Last Modified: 2026-08-24T18:22:58.150
Original Description: Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
"Sooner or later, those who win are those who think they can."
— Richard Bach