8.1
CVE-2020-3475
- EPSS 0.22%
- Published 24.09.2020 18:15:19
- Last modified 21.11.2024 05:31:08
- Source psirt@cisco.com
- Teams watchlist Login
- Open Login
Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to gain unauthorized read access to sensitive data or cause the web management software to hang or crash, resulting in a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.
Data is provided by the National Vulnerability Database (NVD)
Cisco ≫ Ios Version-
Cisco ≫ 1100 Integrated Services Router Version-
Cisco ≫ 1101 Integrated Services Router Version-
Cisco ≫ 1109 Integrated Services Router Version-
Cisco ≫ 1111x Integrated Services Router Version-
Cisco ≫ 111x Integrated Services Router Version-
Cisco ≫ 1120 Integrated Services Router Version-
Cisco ≫ 1160 Integrated Services Router Version-
Cisco ≫ Asr 1001-hx Version-
Cisco ≫ Asr 1001-x Version-
Cisco ≫ Asr 1002-hx Version-
Cisco ≫ Asr 1002-x Version-
Cisco ≫ Asr 1004 Version-
Cisco ≫ Asr 1006 Version-
Cisco ≫ Asr 1006-x Version-
Cisco ≫ Asr 1009-x Version-
Cisco ≫ Asr 1013 Version-
Cisco ≫ Catalyst 9800-40 Version-
Cisco ≫ Catalyst 9800-80 Version-
Cisco ≫ Catalyst 9800-cl Version-
Cisco ≫ Catalyst 9800-l Version-
Cisco ≫ Catalyst 9800-l-c Version-
Cisco ≫ Catalyst 9800-l-f Version-
Cisco ≫ Catalyst C9200-24p Version-
Cisco ≫ Catalyst C9200-24t Version-
Cisco ≫ Catalyst C9200-48p Version-
Cisco ≫ Catalyst C9200-48t Version-
Cisco ≫ Catalyst C9200l-24p-4g Version-
Cisco ≫ Catalyst C9200l-24p-4x Version-
Cisco ≫ Catalyst C9200l-24pxg-2y Version-
Cisco ≫ Catalyst C9200l-24pxg-4x Version-
Cisco ≫ Catalyst C9200l-24t-4g Version-
Cisco ≫ Catalyst C9200l-24t-4x Version-
Cisco ≫ Catalyst C9200l-48p-4g Version-
Cisco ≫ Catalyst C9200l-48p-4x Version-
Cisco ≫ Catalyst C9200l-48pxg-2y Version-
Cisco ≫ Catalyst C9200l-48pxg-4x Version-
Cisco ≫ Catalyst C9200l-48t-4g Version-
Cisco ≫ Catalyst C9200l-48t-4x Version-
Cisco ≫ Catalyst C9300-24p Version-
Cisco ≫ Catalyst C9300-24s Version-
Cisco ≫ Catalyst C9300-24t Version-
Cisco ≫ Catalyst C9300-24u Version-
Cisco ≫ Catalyst C9300-24ux Version-
Cisco ≫ Catalyst C9300-48p Version-
Cisco ≫ Catalyst C9300-48s Version-
Cisco ≫ Catalyst C9300-48t Version-
Cisco ≫ Catalyst C9300-48u Version-
Cisco ≫ Catalyst C9300-48un Version-
Cisco ≫ Catalyst C9300-48uxm Version-
Cisco ≫ Catalyst C9300l-24p-4g Version-
Cisco ≫ Catalyst C9300l-24p-4x Version-
Cisco ≫ Catalyst C9300l-24t-4g Version-
Cisco ≫ Catalyst C9300l-24t-4x Version-
Cisco ≫ Catalyst C9300l-48p-4g Version-
Cisco ≫ Catalyst C9300l-48p-4x Version-
Cisco ≫ Catalyst C9300l-48t-4g Version-
Cisco ≫ Catalyst C9300l-48t-4x Version-
Cisco ≫ Catalyst C9500-12q Version-
Cisco ≫ Catalyst C9500-16x Version-
Cisco ≫ Catalyst C9500-24q Version-
Cisco ≫ Catalyst C9500-24y4c Version-
Cisco ≫ Catalyst C9500-32c Version-
Cisco ≫ Catalyst C9500-32qc Version-
Cisco ≫ Catalyst C9500-40x Version-
Cisco ≫ Catalyst C9500-48y4c Version-
Cisco ≫ Ws-c3650-12x48uq Version-
Cisco ≫ Ws-c3650-12x48ur Version-
Cisco ≫ Ws-c3650-12x48uz Version-
Cisco ≫ Ws-c3650-24pd Version-
Cisco ≫ Ws-c3650-24pdm Version-
Cisco ≫ Ws-c3650-24ps Version-
Cisco ≫ Ws-c3650-24td Version-
Cisco ≫ Ws-c3650-24ts Version-
Cisco ≫ Ws-c3650-48fd Version-
Cisco ≫ Ws-c3650-48fq Version-
Cisco ≫ Ws-c3650-48fqm Version-
Cisco ≫ Ws-c3650-48fs Version-
Cisco ≫ Ws-c3650-48pd Version-
Cisco ≫ Ws-c3650-48pq Version-
Cisco ≫ Ws-c3650-48ps Version-
Cisco ≫ Ws-c3650-48td Version-
Cisco ≫ Ws-c3650-48tq Version-
Cisco ≫ Ws-c3650-48ts Version-
Cisco ≫ Ws-c3650-8x24uq Version-
Cisco ≫ Ws-c3850 Version-
Cisco ≫ Ws-c3850-12s Version-
Cisco ≫ Ws-c3850-12x48u Version-
Cisco ≫ Ws-c3850-12xs Version-
Cisco ≫ Ws-c3850-24p Version-
Cisco ≫ Ws-c3850-24s Version-
Cisco ≫ Ws-c3850-24t Version-
Cisco ≫ Ws-c3850-24u Version-
Cisco ≫ Ws-c3850-24xs Version-
Cisco ≫ Ws-c3850-24xu Version-
Cisco ≫ Ws-c3850-48f Version-
Cisco ≫ Ws-c3850-48p Version-
Cisco ≫ Ws-c3850-48t Version-
Cisco ≫ Ws-c3850-48u Version-
Cisco ≫ Ws-c3850-48xs Version-
Cisco ≫ 1101 Integrated Services Router Version-
Cisco ≫ 1109 Integrated Services Router Version-
Cisco ≫ 1111x Integrated Services Router Version-
Cisco ≫ 111x Integrated Services Router Version-
Cisco ≫ 1120 Integrated Services Router Version-
Cisco ≫ 1160 Integrated Services Router Version-
Cisco ≫ Asr 1001-hx Version-
Cisco ≫ Asr 1001-x Version-
Cisco ≫ Asr 1002-hx Version-
Cisco ≫ Asr 1002-x Version-
Cisco ≫ Asr 1004 Version-
Cisco ≫ Asr 1006 Version-
Cisco ≫ Asr 1006-x Version-
Cisco ≫ Asr 1009-x Version-
Cisco ≫ Asr 1013 Version-
Cisco ≫ Catalyst 9800-40 Version-
Cisco ≫ Catalyst 9800-80 Version-
Cisco ≫ Catalyst 9800-cl Version-
Cisco ≫ Catalyst 9800-l Version-
Cisco ≫ Catalyst 9800-l-c Version-
Cisco ≫ Catalyst 9800-l-f Version-
Cisco ≫ Catalyst C9200-24p Version-
Cisco ≫ Catalyst C9200-24t Version-
Cisco ≫ Catalyst C9200-48p Version-
Cisco ≫ Catalyst C9200-48t Version-
Cisco ≫ Catalyst C9200l-24p-4g Version-
Cisco ≫ Catalyst C9200l-24p-4x Version-
Cisco ≫ Catalyst C9200l-24pxg-2y Version-
Cisco ≫ Catalyst C9200l-24pxg-4x Version-
Cisco ≫ Catalyst C9200l-24t-4g Version-
Cisco ≫ Catalyst C9200l-24t-4x Version-
Cisco ≫ Catalyst C9200l-48p-4g Version-
Cisco ≫ Catalyst C9200l-48p-4x Version-
Cisco ≫ Catalyst C9200l-48pxg-2y Version-
Cisco ≫ Catalyst C9200l-48pxg-4x Version-
Cisco ≫ Catalyst C9200l-48t-4g Version-
Cisco ≫ Catalyst C9200l-48t-4x Version-
Cisco ≫ Catalyst C9300-24p Version-
Cisco ≫ Catalyst C9300-24s Version-
Cisco ≫ Catalyst C9300-24t Version-
Cisco ≫ Catalyst C9300-24u Version-
Cisco ≫ Catalyst C9300-24ux Version-
Cisco ≫ Catalyst C9300-48p Version-
Cisco ≫ Catalyst C9300-48s Version-
Cisco ≫ Catalyst C9300-48t Version-
Cisco ≫ Catalyst C9300-48u Version-
Cisco ≫ Catalyst C9300-48un Version-
Cisco ≫ Catalyst C9300-48uxm Version-
Cisco ≫ Catalyst C9300l-24p-4g Version-
Cisco ≫ Catalyst C9300l-24p-4x Version-
Cisco ≫ Catalyst C9300l-24t-4g Version-
Cisco ≫ Catalyst C9300l-24t-4x Version-
Cisco ≫ Catalyst C9300l-48p-4g Version-
Cisco ≫ Catalyst C9300l-48p-4x Version-
Cisco ≫ Catalyst C9300l-48t-4g Version-
Cisco ≫ Catalyst C9300l-48t-4x Version-
Cisco ≫ Catalyst C9500-12q Version-
Cisco ≫ Catalyst C9500-16x Version-
Cisco ≫ Catalyst C9500-24q Version-
Cisco ≫ Catalyst C9500-24y4c Version-
Cisco ≫ Catalyst C9500-32c Version-
Cisco ≫ Catalyst C9500-32qc Version-
Cisco ≫ Catalyst C9500-40x Version-
Cisco ≫ Catalyst C9500-48y4c Version-
Cisco ≫ Ws-c3650-12x48uq Version-
Cisco ≫ Ws-c3650-12x48ur Version-
Cisco ≫ Ws-c3650-12x48uz Version-
Cisco ≫ Ws-c3650-24pd Version-
Cisco ≫ Ws-c3650-24pdm Version-
Cisco ≫ Ws-c3650-24ps Version-
Cisco ≫ Ws-c3650-24td Version-
Cisco ≫ Ws-c3650-24ts Version-
Cisco ≫ Ws-c3650-48fd Version-
Cisco ≫ Ws-c3650-48fq Version-
Cisco ≫ Ws-c3650-48fqm Version-
Cisco ≫ Ws-c3650-48fs Version-
Cisco ≫ Ws-c3650-48pd Version-
Cisco ≫ Ws-c3650-48pq Version-
Cisco ≫ Ws-c3650-48ps Version-
Cisco ≫ Ws-c3650-48td Version-
Cisco ≫ Ws-c3650-48tq Version-
Cisco ≫ Ws-c3650-48ts Version-
Cisco ≫ Ws-c3650-8x24uq Version-
Cisco ≫ Ws-c3850 Version-
Cisco ≫ Ws-c3850-12s Version-
Cisco ≫ Ws-c3850-12x48u Version-
Cisco ≫ Ws-c3850-12xs Version-
Cisco ≫ Ws-c3850-24p Version-
Cisco ≫ Ws-c3850-24s Version-
Cisco ≫ Ws-c3850-24t Version-
Cisco ≫ Ws-c3850-24u Version-
Cisco ≫ Ws-c3850-24xs Version-
Cisco ≫ Ws-c3850-24xu Version-
Cisco ≫ Ws-c3850-48f Version-
Cisco ≫ Ws-c3850-48p Version-
Cisco ≫ Ws-c3850-48t Version-
Cisco ≫ Ws-c3850-48u Version-
Cisco ≫ Ws-c3850-48xs Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.22% | 0.443 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 8.1 | 2.8 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
|
nvd@nist.gov | 5.5 | 8 | 4.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:P
|
psirt@cisco.com | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.