CVE-2024-20419 EXPLOIT
10.0
CRITICAL · CVSS 3.1 · EPSS 80.6% (pctl 100)
Patch early
A public exploit exists.
Description
A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to change the password of any user, including administrative users. This vulnerability is due to improper implementation of the password-change process. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow an attacker to access the web UI or API with the privileges of the compromised user.
Scoring
| CVSS | 10.0 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 80.64% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-620 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2024-07-17 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| cisco | smart software manager on-prem |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Cisco Smart Software Manager On-Prem 8-202206 - Account Takeover | 2025-04-10 |
References
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cssm-auth-sLw3uhUy
- https://www.secpod.com/blog/critical-flaw-in-ciscos-secure-email-gateways-allows-attackers-to-control-the-device-completely/
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cssm-auth-sLw3uhUy
→ the Explorer · watch your stack · NVD