

Rewterz Threat Advisory – CVE-2022-20952 – Cisco AsyncOS Software for Cisco Secure Web Appliance Vulnerability
October 6, 2022
Rewterz Threat Alert – SmokeLoader Malware – Active IOCs
October 6, 2022
Rewterz Threat Advisory – CVE-2022-20952 – Cisco AsyncOS Software for Cisco Secure Web Appliance Vulnerability
October 6, 2022
Rewterz Threat Alert – SmokeLoader Malware – Active IOCs
October 6, 2022Severity
Medium
Analysis Summary
CVE-2022-20939
Cisco Smart Software Manager On-Prem could allow a remote authenticated attacker to gain elevated privileges on the system, caused by inadequate protection of sensitive user information. By accessing certain logs on an affected system, an attacker could exploit this vulnerability to use the obtained information to elevate privileges to System Admin.
Impact
Privilege Escalation
Indicators Of Compromise
CVE
- CVE-2022-20939
Affected Vendors
Cisco
Affected Products
Cisco Smart Software Manager On-Prem
Remediation
Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.