Source |
The Hacker News |
Identifiant |
5180170 |
Date de publication |
2022-06-15 19:28:48 (vue: 2022-06-16 04:06:38) |
Titre |
Critical Flaw in Cisco Secure Email and Web Manager Lets Attackers Bypass Authentication |
Texte |
Cisco on Wednesday rolled out fixes to address a critical security flaw affecting Email Security Appliance (ESA) and Secure Email and Web Manager that could be exploited by an unauthenticated, remote attacker to sidestep authentication.
Assigned the CVE identifier CVE-2022-20798, the bypass vulnerability is rated 9.8 out of a maximum of 10 on the CVSS scoring system and stems from improper |
Notes |
|
Envoyé |
Oui |
Condensat |
2022 20798 address affecting appliance assigned attacker attackers authentication bypass cisco could critical cve cvss email esa exploited fixes flaw from identifier improper lets manager maximum out rated remote rolled scoring secure security sidestep stems system unauthenticated vulnerability web wednesday |
Tags |
Vulnerability
|
Stories |
|
Move |
|
Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2022-06-16 08:41:13 |
(Déjà vu) Cisco fixed a critical Bypass Authentication flaw in Cisco ESA and Secure Email and Web Manager (lien direct) |
>Cisco addressed a critical bypass authentication flaw in Cisco Email Security Appliance (ESA) and Secure Email and Web Manager. Cisco addressed a critical bypass authentication vulnerability affecting Email Security Appliance (ESA) and Secure Email and Web Manager. The flaw, tracked as CVE-2022-20798 (CVSS score 9.8), can be exploited by an unauthenticated, remote attacker to bypass […]
|
Vulnerability
|
|
|