Unrated severityNVD Advisory· Published Jun 3, 2020· Updated Nov 15, 2024
Cisco Application Services Engine Software Authorization Vulnerability
CVE-2020-3335
Description
A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attacker to read sensitive information of other users on an affected device. The vulnerability is due to insufficient authorization limitations. An attacker could exploit this vulnerability by logging in to an affected device locally with valid credentials. A successful exploit could allow the attacker to read the sensitive information of other users on the affected device.
Affected products
1- Range: n/a
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-APIC-KSV-3wzbHYT4mitrevendor-advisoryx_refsource_CISCO
News mentions
0No linked articles in our index yet.