PT-2020-4227 · Cisco · Cisco Cyber Vision Center

Published

2020-08-05

·

Updated

2020-08-20

·

CVE-2020-3448

CVSS v3.1

5.8

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: Cisco Cyber Vision Center (affected versions not specified)
Description: The issue is related to insufficient access control in the software, which could allow an unauthenticated, remote attacker to bypass authentication and access internal services. This could potentially impact the monitoring of sensors managed by the software. An attacker could exploit this by directly accessing the internal services of an affected device.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04667
CVE-2020-3448

Affected Products

Cisco Cyber Vision Center