Rewterz

Rewterz Threat Advisory – CVE-2022-28820 – Adobe ACS AEM Commons Vulnerability

April 25, 2022
Rewterz

Rewterz Threat Update – T-Mobile Confirms LAPSUS$ Hack

April 25, 2022

Rewterz Threat Advisory – CVE-2022-20773 – Umbrella Virtual Appliance for VMWare ESXi and Hyper-V Vulnerability

Severity

High

Analysis Summary

CVE-2022-20773

Umbrella Virtual Appliance for VMWare ESXi and Hyper-V could allow a remote attacker to bypass security restrictions, caused by the use of a static SSH host key. By performing a man-in-the-middle attack on an SSH connection, an attacker could exploit this vulnerability to obtain the administrator credentials, change configurations, or reload the VA.

Impact

Security Bypass

Indicators Of Compromise

CVE

CVE-2022-20773

Affected Vendors

Cisco

Affected Products

  • Cisco Umbrella Virtual Appliance for VMWare ESXi 3.3
  • Cisco Umbrella Virtual Appliance for Hyper-V 3.3

Remediation

Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.

Cisco Security Advisor

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.