vulnerability

Cisco XE: CVE-2020-3474: Cisco IOS XE Software Web Management Framework Vulnerabilities

Severity
6
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:P)
Published
Sep 25, 2020
Added
Sep 25, 2020
Modified
Feb 23, 2024

Description

Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to gain unauthorized read access to sensitive data or cause the web management software to hang or crash, resulting in a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

Solution

cisco-xe-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.