A vulnerability in an access control mechanism of Cisco Cyber Vision Center Software could allow an unauthenticated, remote attacker to bypass authentication and access internal services that are running on an affected device. The vulnerability is due to insufficient enforcement of access control in the software. An attacker could exploit this vulnerability by directly accessing the internal services of an affected device. A successful exploit could allow an attacker to impact monitoring of sensors that are managed by the software.
History

Wed, 13 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2020-08-17T18:00:49.092698Z

Updated: 2024-11-13T18:15:28.692Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2020-3448

cve-icon Vulnrichment

Updated: 2024-08-04T07:37:54.284Z

cve-icon NVD

Status : Modified

Published: 2020-08-17T18:15:13.383

Modified: 2024-11-21T05:31:05.247

Link: CVE-2020-3448

cve-icon Redhat

No data.