Vulnerability Details CVE-2022-20830
A vulnerability in authentication mechanism of Cisco Software-Defined Application Visibility and Control (SD-AVC) on Cisco vManage could allow an unauthenticated, remote attacker to access the GUI of Cisco SD-AVC without authentication. This vulnerability exists because the GUI is accessible on self-managed cloud installations or local server installations of Cisco vManage. An attacker could exploit this vulnerability by accessing the exposed GUI of Cisco SD-AVC. A successful exploit could allow the attacker to view managed device names, SD-AVC logs, and SD-AVC DNS server IP addresses.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 49.2%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2022-20830
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.1
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.1.1
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.1.2
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.2
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.2.1
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.2.2
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.4.2.3
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.5
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.5.1
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.5.1.1
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.5.1.2
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.6
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.6.0.18.3
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.6.0.18.4
-
cpe:2.3:a:cisco:catalyst_sd-wan_manager:20.7
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.0
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.0.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.3
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.302
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.303
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.4
-
cpe:2.3:a:cisco:sd-wan_vmanage:18.4.5
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.1.0
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.0
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.097
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.099
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.2
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.3
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.31
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.2.929
-
cpe:2.3:a:cisco:sd-wan_vmanage:19.3.0
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.1.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.1.1.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.1.12
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.3
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.3.1
-
cpe:2.3:a:cisco:sd-wan_vmanage:20.3.2