← Back

CVE-2024-20475

nvd nist
Published: Sep 25, 2024Modified: Oct 3, 2024

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by inserting malicious data into a specific data field in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface.

Affected (102)

1 product
Catalyst Sd Wan Manager
Configuration A
102 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 20.10.1.1
Version 20.10.1.2
Version 20.10.1
Version 20.10.1_li_images
Version 20.11.1.1
Version 20.11.1.2
Version 20.11.1
Version 20.11.1_li_images
Version 20.12.1
Version 20.12.1_li_images
Version 20.12.2
Version 20.12.2_li_images
Version 20.12.3.1
Version 20.12.3
Version 20.12.3_li_images
Version 20.12.4
Version 20.13.1
Version 20.13.1_li_images
Version 20.14.1
Version 20.14.1_li_images
Version 20.6.0.18.3
Version 20.6.0.18.4
Version 20.6.1.0.1
Version 20.6.1.1
Version 20.6.1.2
Version 20.6.1
Version 20.6.2.0.4
Version 20.6.2.1
Version 20.6.2.2.2
Version 20.6.2.2.3
Version 20.6.2.2.4
Version 20.6.2.2.7
Version 20.6.2.2
Version 20.6.2
Version 20.6.3.0.10
Version 20.6.3.0.11
Version 20.6.3.0.14
Version 20.6.3.0.18
Version 20.6.3.0.19
Version 20.6.3.0.23
Version 20.6.3.0.25
Version 20.6.3.0.27
Version 20.6.3.0.29
Version 20.6.3.0.2
Version 20.6.3.0.33
Version 20.6.3.0.39
Version 20.6.3.0.40
Version 20.6.3.0.47
Version 20.6.3.0.51
Version 20.6.3.0.5
Version 20.6.3.0.7
Version 20.6.3.1.1
Version 20.6.3.2
Version 20.6.3.3
Version 20.6.3.4
Version 20.6.3
Version 20.6.4.0.19
Version 20.6.4.1
Version 20.6.5.1.10
Version 20.6.5.1.11
Version 20.6.5.1.14
Version 20.6.5.1.5
Version 20.6.5.1.7
Version 20.6.5.1
Version 20.6.5.2.3
Version 20.6.5.2.4
Version 20.6.5.2
Version 20.6.5.4
Version 20.6.6.0.1
Version 20.6.7
Version 20.7.1.0.2
Version 20.7.1.1
Version 20.7.1
Version 20.7.1eft2
Version 20.7.2
Version 20.8.1
Version 20.9.1_li_images
Version 20.9.2.2
Version 20.9.2.3
Version 20.9.3.0.12
Version 20.9.3.0.18
Version 20.9.3.0.21
Version 20.9.3.0.23
Version 20.9.3.0.24
Version 20.9.3.0.25
Version 20.9.3.0.26
Version 20.9.3.0.3
Version 20.9.3.0.4
Version 20.9.3
Version 20.9.3_li_images
Version 20.9.4.0.4
Version 20.9.4.1.1
Version 20.9.4.1.3
Version 20.9.4.1
Version 20.9.4.1_li_images
Version 20.9.4
Version 20.9.4_li_images
Version 20.9.5.1
Version 20.9.5.1_li_images
Version 20.9.5.2_li_images
Version 20.9.5
Version 20.9.5_li_images

Timeline

No history available yet.