CVE-2023-20009
published 2023-03-01CVE-2023-20009: A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an…
PriorityP347high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
1.26%
66.4th percentile
A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]].
The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.
Affected
41 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
| cisco | cisco_secure_email_and_web_manager | — | — |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_cisco6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
vendor_cisco·2023-02-15·CVSS 6.5
CVE-2023-20009 [MEDIUM] CWE-20 Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
Multiple vulnerabilities in the web UI and CLI of Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an authenticated attacker to perform injection attacks or elevate privileges.
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-privesc-9DVkFpJ8
Cisco
Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
vendor_cisco·CVSS 3.1
CVE-2023-20009 Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
CVE-2023-20009: Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities
Multiple vulnerabilities in the web UI and CLI of Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an authenticated attacker to perform injection attacks or elevate privileges. For more information about these vulnerabilities, see the
CVSS: 3.1
CWE: CWE-20, CWE-77, CWE-20, CWE-77
Bug IDs: CSCwd29901, CSCwd29905, CSCwd50043, CSCwd29901, CSCwd29905
GHSA
GHSA-rj99-fcj2-r7fw: A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow
ghsa_unreviewed·2023-03-01
CVE-2023-20009 [HIGH] CWE-20 GHSA-rj99-fcj2-r7fw: A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow
A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]]. The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.
Suricata
ET EXPLOIT Adobe ColdFusion ODBC Agent Memory Corruption (CVE-2022-35690)
suricata·2025-11-06·CVSS 9.8
CVE-2022-35690 [CRITICAL] ET EXPLOIT Adobe ColdFusion ODBC Agent Memory Corruption (CVE-2022-35690)
ET EXPLOIT Adobe ColdFusion ODBC Agent Memory Corruption (CVE-2022-35690)
Rule: alert tcp any any -> $HOME_NET 20009 (msg:"ET EXPLOIT Adobe ColdFusion ODBC Agent Memory Corruption (CVE-2022-35690)"; flow:established,to_server; content:"GIOP"; startswith; content:"|00|"; distance:3; within:1; byte_test:4,=,0,4,relative; content:"IIOP|3a|slx|3a 3a|"; distance:0; fast_pattern; content:"SSP|00 00 00 00 00|"; distance:0; content:"|08|"; distance:0; byte_test:1,>,38,0,relative; reference:url,www.zerodayinitiative.com/blog/2023/1/18/cve-2022-35690-unauthenticated-rce-in-adobe-coldfusion; reference:url,www.sonicwall.com/blog/adobe-coldfusion-heap-buffer-overflow-vulnerability; reference:cve,2022-35690; classtype:attempted-admin; sid:2065686; rev:1; metadata:affected_product Adobe_Coldfusion, atta
No public exploits indexed.
No writeups or analysis indexed.
2023-03-01
Published