CVE-2024-20401

CWE-365 documents5 sources
Severity
9.8CRITICAL
EPSS
7.7%
top 8.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 17
Latest updateJul 18

Description

A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to overwrite arbitrary files on the underlying operating system. This vulnerability is due to improper handling of email attachments when file analysis and content filters are enabled. An attacker could exploit this vulnerability by sending an email that contains a crafted attachment through an affected device. A successful exploit could allow the a

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-4rcj-fmjg-q9fv: A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker t2024-07-17
CVEList
CVE-2024-20401: A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker t2024-07-17

📋Vendor Advisories

1
Cisco
Cisco Secure Email Gateway Arbitrary File Write Vulnerability2024-07-17

🕵️Threat Intelligence

1
Bleepingcomputer
Critical Cisco bug lets hackers add root users on SEG devices2024-07-18