CVE-2025-20184
published 2025-02-05CVE-2025-20184: A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could allow an…
PriorityP350high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
0.85%
53.9th percentile
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could allow an authenticated, remote attacker to perform command injection attacks against an affected device. The attacker must authenticate with valid administrator credentials.
This vulnerability is due to insufficient validation of XML configuration files by an affected device. An attacker could exploit this vulnerability by uploading a crafted XML configuration file. A successful exploit could allow the attacker to inject commands to the underlying operating system with root privileges.
Affected
137 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
| cisco | asyncos | — | — |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_cisco6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
vendor_cisco·2025-02-05·CVSS 6.5
CVE-2025-20184 [MEDIUM] CWE-20 Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
Multiple vulnerabilities in Cisco AsyncOS Software for Cisco Secure Email and Web Manager, Cisco Secure Email Gateway, and Cisco Secure Web Appliance could allow an attacker to execute arbitrary commands locally or remotely.
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-multi-yKUJhS34
Cisco
Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
vendor_cisco·CVSS 3.1
CVE-2025-20184 Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
CVE-2025-20184: Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Vulnerabilities
Multiple vulnerabilities in Cisco AsyncOS Software for Cisco Secure Email and Web Manager, Cisco Secure Email Gateway, and Cisco Secure Web Appliance could allow an attacker to execute arbitrary commands locally or remotely. For more information about these vulnerabilities, see the
CVSS: 3.1
CWE: CWE-20, CWE-250, CWE-20, CWE-250
Bug IDs: CSCwk70547, CSCwk70559, CSCwk70574, CSCwk70547, CSCwk70559
GHSA
GHSA-g9mx-x5c2-8c9j: A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could al
ghsa_unreviewed·2025-02-05
CVE-2025-20184 [MEDIUM] CWE-20 GHSA-g9mx-x5c2-8c9j: A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could al
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could allow an authenticated, remote attacker to perform command injection attacks against an affected device. The attacker must authenticate with valid administrator credentials.
This vulnerability is due to insufficient validation of XML configuration files by an affected device. An attacker could exploit this vulnerability by uploading a crafted XML configuration file. A successful exploit could allow the attacker to inject commands to the underlying operating system with root privileges.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-02-05
Published