Vulnerability Details CVE-2020-3344
A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted packet to an affected device. A successful exploit could allow the attacker to cause the Cisco AMP for Endpoints service to crash and restart.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 6.0%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2020-3344
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.10.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.10.1
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.10.2
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.11.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.11.1
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.1
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.2
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.3
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.3.698
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.12.3.738
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.6.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.7.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.8.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.8.1
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.8.4
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.9.0
-
cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:1.9.1