CVE-2023-20261
18.10.2023, 17:15
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to retrieve arbitrary files from an affected system. This vulnerability is due to improper validation of parameters that are sent to the web UI. An attacker could exploit this vulnerability by logging in to Cisco Catalyst SD-WAN Manager and issuing crafted requests using the web UI. A successful exploit could allow the attacker to obtain arbitrary files from the underlying Linux file system of an affected system. To exploit this vulnerability, the attacker must be an authenticated user.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cisco | catalyst_sd-wan_manager | 17.2.4 |
| cisco | catalyst_sd-wan_manager | 17.2.5 |
| cisco | catalyst_sd-wan_manager | 17.2.6 |
| cisco | catalyst_sd-wan_manager | 17.2.7 |
| cisco | catalyst_sd-wan_manager | 17.2.8 |
| cisco | catalyst_sd-wan_manager | 17.2.9 |
| cisco | catalyst_sd-wan_manager | 17.2.10 |
| cisco | catalyst_sd-wan_manager | 18.2.0 |
| cisco | catalyst_sd-wan_manager | 18.3.0 |
| cisco | catalyst_sd-wan_manager | 18.3.1 |
| cisco | catalyst_sd-wan_manager | 18.3.1.1 |
| cisco | catalyst_sd-wan_manager | 18.3.3 |
| cisco | catalyst_sd-wan_manager | 18.3.3.1 |
| cisco | catalyst_sd-wan_manager | 18.3.4 |
| cisco | catalyst_sd-wan_manager | 18.3.5 |
| cisco | catalyst_sd-wan_manager | 18.3.6.1 |
| cisco | catalyst_sd-wan_manager | 18.3.7 |
| cisco | catalyst_sd-wan_manager | 18.3.8 |
| cisco | catalyst_sd-wan_manager | 18.4.0 |
| cisco | catalyst_sd-wan_manager | 18.4.0.1 |
| cisco | catalyst_sd-wan_manager | 18.4.1 |
| cisco | catalyst_sd-wan_manager | 18.4.3 |
| cisco | catalyst_sd-wan_manager | 18.4.4 |
| cisco | catalyst_sd-wan_manager | 18.4.5 |
| cisco | catalyst_sd-wan_manager | 18.4.6 |
| cisco | catalyst_sd-wan_manager | 18.4.302 |
| cisco | catalyst_sd-wan_manager | 18.4.303 |
| cisco | catalyst_sd-wan_manager | 19.1.0 |
| cisco | catalyst_sd-wan_manager | 19.2.0 |
| cisco | catalyst_sd-wan_manager | 19.2.1 |
| cisco | catalyst_sd-wan_manager | 19.2.2 |
| cisco | catalyst_sd-wan_manager | 19.2.3 |
| cisco | catalyst_sd-wan_manager | 19.2.4 |
| cisco | catalyst_sd-wan_manager | 19.2.31 |
| cisco | catalyst_sd-wan_manager | 19.2.097 |
| cisco | catalyst_sd-wan_manager | 19.2.099 |
| cisco | catalyst_sd-wan_manager | 19.2.929 |
| cisco | catalyst_sd-wan_manager | 19.3.0 |
| cisco | catalyst_sd-wan_manager | 20.1.1 |
| cisco | catalyst_sd-wan_manager | 20.1.1.1 |
| cisco | catalyst_sd-wan_manager | 20.1.2 |
| cisco | catalyst_sd-wan_manager | 20.1.3 |
| cisco | catalyst_sd-wan_manager | 20.1.12 |
| cisco | catalyst_sd-wan_manager | 20.3.1 |
| cisco | catalyst_sd-wan_manager | 20.3.2 |
| cisco | catalyst_sd-wan_manager | 20.3.2.1 |
| cisco | catalyst_sd-wan_manager | 20.3.3 |
| cisco | catalyst_sd-wan_manager | 20.3.3.1 |
| cisco | catalyst_sd-wan_manager | 20.3.4 |
| cisco | catalyst_sd-wan_manager | 20.3.4.1 |
| cisco | catalyst_sd-wan_manager | 20.3.4.2 |
| cisco | catalyst_sd-wan_manager | 20.3.4.3 |
| cisco | catalyst_sd-wan_manager | 20.3.5 |
| cisco | catalyst_sd-wan_manager | 20.3.5.1 |
| cisco | catalyst_sd-wan_manager | 20.3.6 |
| cisco | catalyst_sd-wan_manager | 20.3.7 |
| cisco | catalyst_sd-wan_manager | 20.3.7.1 |
| cisco | catalyst_sd-wan_manager | 20.3.7.2 |
| cisco | catalyst_sd-wan_manager | 20.3.8 |
| cisco | catalyst_sd-wan_manager | 20.4.1 |
| cisco | catalyst_sd-wan_manager | 20.4.1.1 |
| cisco | catalyst_sd-wan_manager | 20.4.1.2 |
| cisco | catalyst_sd-wan_manager | 20.4.2 |
| cisco | catalyst_sd-wan_manager | 20.4.2.1 |
| cisco | catalyst_sd-wan_manager | 20.4.2.2 |
| cisco | catalyst_sd-wan_manager | 20.4.2.3 |
| cisco | catalyst_sd-wan_manager | 20.5.1 |
| cisco | catalyst_sd-wan_manager | 20.5.1.1 |
| cisco | catalyst_sd-wan_manager | 20.5.1.2 |
| cisco | catalyst_sd-wan_manager | 20.6.1 |
| cisco | catalyst_sd-wan_manager | 20.6.1.1 |
| cisco | catalyst_sd-wan_manager | 20.6.1.2 |
| cisco | catalyst_sd-wan_manager | 20.6.2 |
| cisco | catalyst_sd-wan_manager | 20.6.2.1 |
| cisco | catalyst_sd-wan_manager | 20.6.2.2 |
| cisco | catalyst_sd-wan_manager | 20.6.3 |
| cisco | catalyst_sd-wan_manager | 20.6.3.0.45 |
| cisco | catalyst_sd-wan_manager | 20.6.3.0.46 |
| cisco | catalyst_sd-wan_manager | 20.6.3.0.47 |
| cisco | catalyst_sd-wan_manager | 20.6.3.1 |
| cisco | catalyst_sd-wan_manager | 20.6.3.2 |
| cisco | catalyst_sd-wan_manager | 20.6.3.3 |
| cisco | catalyst_sd-wan_manager | 20.6.3.4 |
| cisco | catalyst_sd-wan_manager | 20.6.4 |
| cisco | catalyst_sd-wan_manager | 20.6.4.0.21 |
| cisco | catalyst_sd-wan_manager | 20.6.4.1 |
| cisco | catalyst_sd-wan_manager | 20.6.4.2 |
| cisco | catalyst_sd-wan_manager | 20.6.5 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1.7 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1.9 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1.10 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1.11 |
| cisco | catalyst_sd-wan_manager | 20.6.5.1.13 |
| cisco | catalyst_sd-wan_manager | 20.6.5.2 |
| cisco | catalyst_sd-wan_manager | 20.6.5.2.4 |
| cisco | catalyst_sd-wan_manager | 20.6.5.2.8 |
| cisco | catalyst_sd-wan_manager | 20.6.5.4 |
| cisco | catalyst_sd-wan_manager | 20.6.5.5 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| cisco | sd-wan_vmanage | 17.2.6 | CNA |
| cisco | sd-wan_vmanage | 17.2.7 | CNA |
| cisco | sd-wan_vmanage | 17.2.8 | CNA |
| cisco | sd-wan_vmanage | 17.2.9 | CNA |
| cisco | sd-wan_vmanage | 17.2.10 | CNA |
| cisco | sd-wan_vmanage | 17.2.4 | CNA |
| cisco | sd-wan_vmanage | 17.2.5 | CNA |
| cisco | sd-wan_vmanage | 18.3.1.1 | CNA |
| cisco | sd-wan_vmanage | 18.3.3.1 | CNA |
| cisco | sd-wan_vmanage | 18.3.3 | CNA |
| cisco | sd-wan_vmanage | 18.3.4 | CNA |
| cisco | sd-wan_vmanage | 18.3.5 | CNA |
| cisco | sd-wan_vmanage | 18.3.7 | CNA |
| cisco | sd-wan_vmanage | 18.3.8 | CNA |
| cisco | sd-wan_vmanage | 18.3.6.1 | CNA |
| cisco | sd-wan_vmanage | 18.3.1 | CNA |
| cisco | sd-wan_vmanage | 18.3.0 | CNA |
| cisco | sd-wan_vmanage | 18.4.0.1 | CNA |
| cisco | sd-wan_vmanage | 18.4.3 | CNA |
| cisco | sd-wan_vmanage | 18.4.302 | CNA |
| cisco | sd-wan_vmanage | 18.4.303 | CNA |
| cisco | sd-wan_vmanage | 18.4.4 | CNA |
| cisco | sd-wan_vmanage | 18.4.5 | CNA |
| cisco | sd-wan_vmanage | 18.4.0 | CNA |
| cisco | sd-wan_vmanage | 18.4.1 | CNA |
| cisco | sd-wan_vmanage | 18.4.6 | CNA |
| cisco | sd-wan_vmanage | 19.2.0 | CNA |
| cisco | sd-wan_vmanage | 19.2.97 | CNA |
| cisco | sd-wan_vmanage | 19.2.99 | CNA |
| cisco | sd-wan_vmanage | 19.2.1 | CNA |
| cisco | sd-wan_vmanage | 19.2.2 | CNA |
| cisco | sd-wan_vmanage | 19.2.3 | CNA |
| cisco | sd-wan_vmanage | 19.2.31 | CNA |
| cisco | sd-wan_vmanage | 19.2.929 | CNA |
| cisco | sd-wan_vmanage | 19.2.4 | CNA |
| cisco | sd-wan_vmanage | 20.1.1.1 | CNA |
| cisco | sd-wan_vmanage | 20.1.12 | CNA |
| cisco | sd-wan_vmanage | 20.1.1 | CNA |
| cisco | sd-wan_vmanage | 20.1.2 | CNA |
| cisco | sd-wan_vmanage | 20.1.3 | CNA |
| cisco | sd-wan_vmanage | 19.3.0 | CNA |
| cisco | sd-wan_vmanage | 19.1.0 | CNA |
| cisco | sd-wan_vmanage | 18.2.0 | CNA |
| cisco | sd-wan_vmanage | 20.3.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.2 | CNA |
| cisco | sd-wan_vmanage | 20.3.2.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.3 | CNA |
| cisco | sd-wan_vmanage | 20.3.3.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.4 | CNA |
| cisco | sd-wan_vmanage | 20.3.4.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.4.2 | CNA |
| cisco | sd-wan_vmanage | 20.3.5 | CNA |
| cisco | sd-wan_vmanage | 20.3.6 | CNA |
| cisco | sd-wan_vmanage | 20.3.7 | CNA |
| cisco | sd-wan_vmanage | 20.3.7.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.4.3 | CNA |
| cisco | sd-wan_vmanage | 20.3.5.1 | CNA |
| cisco | sd-wan_vmanage | 20.3.7.2 | CNA |
| cisco | sd-wan_vmanage | 20.3.8 | CNA |
| cisco | sd-wan_vmanage | 20.4.1 | CNA |
| cisco | sd-wan_vmanage | 20.4.1.1 | CNA |
| cisco | sd-wan_vmanage | 20.4.1.2 | CNA |
| cisco | sd-wan_vmanage | 20.4.2 | CNA |
| cisco | sd-wan_vmanage | 20.4.2.2 | CNA |
| cisco | sd-wan_vmanage | 20.4.2.1 | CNA |
| cisco | sd-wan_vmanage | 20.4.2.3 | CNA |
| cisco | sd-wan_vmanage | 20.5.1 | CNA |
| cisco | sd-wan_vmanage | 20.5.1.2 | CNA |
| cisco | sd-wan_vmanage | 20.5.1.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.1.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.2.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.2.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.3 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.4 | CNA |
| cisco | sd-wan_vmanage | 20.6.5 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.1.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.4.1 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.4 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.3 | CNA |
| cisco | sd-wan_vmanage | 20.6.4.2 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.0.45 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.0.46 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.0.47 | CNA |
| cisco | sd-wan_vmanage | 20.6.3.4 | CNA |
| cisco | sd-wan_vmanage | 20.6.4.0.21 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1.10 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1.11 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1.7 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1.9 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.2.4 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.5 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.2.8 | CNA |
| cisco | sd-wan_vmanage | 20.6.5.1.13 | CNA |
Common Weakness Enumeration