CVE-2020-3370: Cisco Content Security Management Appliance Filter Bypass Vulnerability
A vulnerability in URL filtering of Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to bypass URL filtering on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted, malicious HTTP request to an affected device. A successful exploit could allow the attacker to redirect users to malicious sites.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Cisco Content Security Management Appliance vulnerability?
The vulnerability ID for this Cisco Content Security Management Appliance vulnerability is CVE-2020-3370.
What is the severity rating of CVE-2020-3370?
The severity rating of CVE-2020-3370 is 5.8 (Medium).
How does CVE-2020-3370 affect Cisco Email Security Appliance?
CVE-2020-3370 affects Cisco Email Security Appliance versions 13.0.1 and between 13.5.0 to 13.5.1.
What is the vulnerability description for CVE-2020-3370?
CVE-2020-3370 is a vulnerability in URL filtering of Cisco Content Security Management Appliance that could allow an unauthenticated, remote attacker to bypass URL filtering on an affected device due to insufficient input validation.
How can the CVE-2020-3370 vulnerability be exploited?
The CVE-2020-3370 vulnerability can be exploited by sending a crafted request to the affected device.