Cisco Small Business Switches Information Disclosure Vulnerability
Published Sep 23, 2020
5.3
MEDIUMCVSS 3.1
EPSS 10.27%
Description
A vulnerability in the web UI of Cisco Small Business Switches could allow an unauthenticated, remote attacker to access sensitive device information. The vulnerability exists because the software lacks proper authentication controls to information accessible from the web UI. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web UI of an affected device. A successful exploit could allow the attacker to access sensitive device information, which includes configuration files.
Affected products
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||
|---|---|---|---|---|---|---|
| Cisco | Cisco Small Business 250 Series Smart Switches Software | n/a |
|
Configuration 1
- < 2.5.0.92
Configuration 2
- < 2.5.0.92
Running on/with
- n/a
Configuration 3
- < 2.5.0.92
Configuration 4
- < 2.5.0.92
Running on/with
- n/a
Configuration 5
- < 2.5.0.92
Configuration 6
- < 2.5.0.92
Running on/with
- n/a
Configuration 7
- < 2.5.0.92
Configuration 8
- < 2.5.0.92
Configuration 9
- < 2.5.0.92
Configuration 10
- < 2.5.0.92
Running on/with
- n/a
Configuration 11
- < 2.5.0.92
Configuration 12
- < 2.5.0.92
Configuration 13
- < 2.5.0.92
Running on/with
- n/a
Configuration 14
- < 2.5.0.92
Configuration 15
- < 2.5.0.92
Configuration 16
- < 2.5.0.92
Configuration 17
- < 2.5.0.92
Configuration 18
- < 2.5.0.92
Running on/with
- n/a
Configuration 19
- < 2.5.0.92
Configuration 20
- < 2.5.0.92
Configuration 21
- < 2.5.0.92
Running on/with
- n/a
Configuration 22
- < 2.5.0.92
Configuration 23
- < 2.5.0.92
Configuration 24
- < 2.5.0.92
Configuration 25
- < 2.5.0.92
Running on/with
- n/a
Configuration 26
- < 2.5.0.92
Configuration 27
- < 2.5.0.92
Configuration 28
- < 2.5.0.92
Running on/with
- n/a
Configuration 29
- < 2.5.0.92
Running on/with
- n/a
Configuration 30
- < 2.5.0.92
Running on/with
- n/a
Configuration 31
- < 2.5.0.92
Running on/with
- n/a
Configuration 32
- < 2.5.0.92
Running on/with
- n/a
Configuration 33
- < 2.5.0.92
Configuration 34
- < 2.5.0.92
Running on/with
- n/a
Configuration 35
- < 2.5.0.92
Running on/with
- n/a
Configuration 36
- < 2.5.0.92
Configuration 37
- < 2.5.0.92
Running on/with
- n/a
Configuration 38
- < 2.5.0.92
Running on/with
- n/a
Configuration 39
- < 2.5.0.92
Running on/with
- n/a
Configuration 40
- < 2.5.0.92
Running on/with
- n/a
Configuration 41
- < 2.5.0.92
Running on/with
- n/a
Configuration 42
- < 2.5.0.92
Running on/with
- n/a
Configuration 43
- < 2.5.0.92
Configuration 44
- < 2.5.0.92
Configuration 45
- < 2.5.0.92
Configuration 46
- < 2.5.0.92
Running on/with
- n/a
Configuration 47
- < 2.5.0.92
Running on/with
- n/a
Configuration 48
- < 2.5.0.92
Running on/with
- n/a
Configuration 49
- < 2.5.0.92
Configuration 50
- < 2.5.0.92
Running on/with
- n/a
Configuration 51
- < 2.5.0.92
Running on/with
- n/a
Configuration 52
- < 2.5.0.92
Configuration 53
- < 2.5.0.92
Running on/with
- n/a
Configuration 54
- < 2.5.0.92
Running on/with
- n/a
Configuration 55
- < 2.5.0.92
Configuration 56
- < 2.5.0.92
Running on/with
- n/a
Configuration 57
- < 2.5.0.92
Running on/with
- n/a
Configuration 58
- < 1.4.11.4
Configuration 59
- < 1.4.11.4
Configuration 60
- < 1.4.11.4
Running on/with
- n/a
Configuration 61
- < 1.4.11.4
Configuration 62
- < 1.4.11.4
Configuration 63
- < 1.4.11.4
Running on/with
- n/a
Configuration 64
- < 1.4.11.4
Configuration 65
- < 1.4.11.4
Running on/with
- n/a
Configuration 66
- < 1.4.11.4
Configuration 67
- < 1.4.11.4
Configuration 68
- < 1.4.11.4
Configuration 69
- < 1.4.11.4
Configuration 70
- < 1.4.11.4
Running on/with
- n/a
Configuration 71
- < 1.4.11.4
Configuration 72
- < 1.4.11.4
Configuration 73
- < 1.4.11.4
Configuration 74
- < 1.4.11.4
Configuration 75
- < 1.4.11.4
Running on/with
- n/a
Configuration 76
- < 1.4.11.4
Configuration 77
- < 1.4.11.4
Configuration 78
- < 1.4.11.4
Running on/with
- n/a
Configuration 79
- < 1.4.11.4
Configuration 80
- < 1.4.11.4
Running on/with
- n/a
Configuration 81
- < 1.4.11.4
Configuration 82
- < 1.4.11.4
Configuration 83
- < 1.4.11.4
Configuration 84
- < 1.4.11.4
Configuration 85
- < 1.4.11.4
Running on/with
- n/a
Configuration 86
- < 1.4.11.4
Configuration 87
- < 1.4.11.4
Configuration 88
- < 1.4.11.4
Running on/with
- n/a
Configuration 89
- < 1.4.11.4
Running on/with
- n/a
Configuration 90
- < 1.4.11.4
Running on/with
- n/a
Configuration 91
- < 1.4.11.4
Running on/with
- n/a
Configuration 92
- < 1.4.11.4
Running on/with
- n/a
Configuration 93
- < 1.4.11.4
Running on/with
- n/a
Configuration 94
- < 1.4.11.4
Running on/with
- n/a
Configuration 95
- < 1.4.11.4
Configuration 96
- < 1.4.11.4
Configuration 97
- < 1.4.11.4
Running on/with
- n/a
Configuration 98
- < 1.4.11.4
Configuration 99
- < 1.4.11.4
Configuration 100
- < 1.4.11.4
Configuration 101
- < 1.4.11.4
Configuration 102
- < 1.4.11.4
Running on/with
- n/a
Configuration 103
- < 1.4.11.4
Configuration 104
- < 1.4.11.4
Configuration 105
- < 1.4.11.4
Configuration 106
- < 1.4.11.4
Configuration 107
- < 1.4.11.4
Configuration 108
- < 1.4.11.4
Configuration 109
- < 1.4.11.4
Configuration 110
- < 1.4.11.4
Running on/with
- n/a
Configuration 111
- < 1.4.11.4
Running on/with
- n/a
Configuration 112
- < 1.4.11.4
Running on/with
- n/a
Configuration 113
- < 1.4.11.4
Configuration 114
- < 1.4.11.4
Running on/with
- n/a
Configuration 115
- < 1.4.11.4
Running on/with
- n/a
Configuration 116
- < 1.4.11.4
Running on/with
- n/a
Configuration 117
- < 1.4.11.4
Running on/with
- n/a
Configuration 118
- < 1.4.11.4
Configuration 119
- < 1.4.11.4
Configuration 120
- < 1.4.11.4
Configuration 121
- < 1.4.11.4
Configuration 122
- < 1.4.11.4
Configuration 123
- < 1.4.11.4
Configuration 124
- < 1.4.11.4
Configuration 125
- < 1.4.11.4
Configuration 126
- < 1.4.11.4
Configuration 127
- < 1.4.11.4
Running on/with
- n/a
Configuration 128
- < 1.4.11.4
Configuration 129
- < 1.4.11.4
Running on/with
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (2)
Change history (0)
No recorded changes yet.