Medium severity6.5NVD Advisory· Published Jun 20, 2019· Updated Jun 17, 2026
CVE-2019-1906
CVE-2019-1906
Description
A vulnerability in the Virtual Domain system of Cisco Prime Infrastructure (PI) could allow an authenticated, remote attacker to change the virtual domain configuration, which could lead to privilege escalation. The vulnerability is due to improper validation of API requests. An attacker could exploit this vulnerability by manipulating requests sent to an affected PI server. A successful exploit could allow the attacker to change the virtual domain configuration and possibly elevate privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:cisco:prime_infrastructure:3.6:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:prime_infrastructure:3.6:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 3.6(0.0)
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/108855nvdThird Party AdvisoryVDB Entry
- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190619-prime-privescalnvdVendor Advisory
News mentions
0No linked articles in our index yet.