Description
A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to obtain sensitive network information.
Published: 2025-03-04
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-24393 A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to obtain sensitive network information.
History

Thu, 31 Jul 2025 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Cisco asyncos
Cisco secure Email And Web Manager M170
Cisco secure Email And Web Manager M190
Cisco secure Email And Web Manager M195
Cisco secure Email And Web Manager M380
Cisco secure Email And Web Manager M390
Cisco secure Email And Web Manager M390x
Cisco secure Email And Web Manager M395
Cisco secure Email And Web Manager M680
Cisco secure Email And Web Manager M690
Cisco secure Email And Web Manager M690x
Cisco secure Email And Web Manager M695
CPEs cpe:2.3:a:cisco:content_security_management_appliance:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_email_and_web_manager:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m170:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m190:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m195:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m380:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m390:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m390x:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m395:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m680:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m690:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m690x:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m695:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:asyncos:11.0.0-128:*:*:*:*:*:*:*
Vendors & Products Cisco content Security Management Appliance
Cisco asyncos
Cisco secure Email And Web Manager M170
Cisco secure Email And Web Manager M190
Cisco secure Email And Web Manager M195
Cisco secure Email And Web Manager M380
Cisco secure Email And Web Manager M390
Cisco secure Email And Web Manager M390x
Cisco secure Email And Web Manager M395
Cisco secure Email And Web Manager M680
Cisco secure Email And Web Manager M690
Cisco secure Email And Web Manager M690x
Cisco secure Email And Web Manager M695

Thu, 31 Jul 2025 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Cisco content Security Management Appliance
CPEs cpe:2.3:a:cisco:content_security_management_appliance:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_email_and_web_manager:11.0.0-128:*:*:*:*:*:*:*
Vendors & Products Cisco content Security Management Appliance

Tue, 04 Mar 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 04 Mar 2025 18:30:00 +0000

Type Values Removed Values Added
Description A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to obtain sensitive network information.
Title Cisco Content Security Management Appliance Information Disclosure Vulnerability
Weaknesses CWE-284
References
Metrics cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}


Subscriptions

Cisco Asyncos Secure Email And Web Manager Secure Email And Web Manager M170 Secure Email And Web Manager M190 Secure Email And Web Manager M195 Secure Email And Web Manager M380 Secure Email And Web Manager M390 Secure Email And Web Manager M390x Secure Email And Web Manager M395 Secure Email And Web Manager M680 Secure Email And Web Manager M690 Secure Email And Web Manager M690x Secure Email And Web Manager M695
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2025-03-04T18:27:11.025Z

Reserved: 2019-12-12T00:00:00.000Z

Link: CVE-2020-3122

cve-icon Vulnrichment

Updated: 2025-03-04T18:27:06.360Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-04T19:15:36.890

Modified: 2025-07-31T19:44:34.333

Link: CVE-2020-3122

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-13T11:06:19Z

Weaknesses