A vulnerability in the implementation of the remote access functionality of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, Cisco Secure Email Gateway, and Cisco Secure Web Appliance could allow an authenticated, local attacker to elevate privileges to root. The attacker must authenticate with valid administrator credentials.
This vulnerability is due to an architectural flaw in the password generation algorithm for the remote access functionality. An attacker could exploit this vulnerability by generating a temporary password for the service account. A successful exploit could allow the attacker to execute arbitrary commands as root and access the underlying operating system.
Note: The Security Impact Rating (SIR) for this vulnerability is Medium due to the unrestricted scope of information that is accessible to an attacker.
References
Link | Resource |
---|---|
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-multi-yKUJhS34 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
06 Aug 2025, 16:53
Type | Values Removed | Values Added |
---|---|---|
First Time |
Cisco secure Email And Web Manager Virtual Appliance M100v
Cisco secure Email And Web Manager M170 Cisco secure Email And Web Manager M690x Cisco Cisco secure Email And Web Manager M190 Cisco secure Email And Web Manager M680 Cisco asyncos Cisco secure Email And Web Manager M390 Cisco secure Email And Web Manager M695 Cisco secure Email And Web Manager Virtual Appliance M300v Cisco secure Email And Web Manager M390x Cisco secure Email And Web Manager Virtual Appliance M600v Cisco secure Email And Web Manager M395 Cisco secure Email And Web Manager M380 Cisco secure Email And Web Manager M195 Cisco secure Email And Web Manager M690 |
|
CPE | cpe:2.3:o:cisco:asyncos:13.5.4-038:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m690x:-:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.5.1-055:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.5.0-048:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m695:-:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:14.2.1-020:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m170:-:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:14.0.0-698:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m680:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m195:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_email_and_web_manager_virtual_appliance_m100v:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m390:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m190:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m390x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m395:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_email_and_web_manager_virtual_appliance_m600v:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m690:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:secure_email_and_web_manager_m380:-:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:13.5.1-277:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:13.0.0-392:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.0.0-104:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.5.2-018:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.0.3-002:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:14.3.0-032:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:15.0.1-030:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:14.2.0-620:*:*:*:*:*:*:* cpe:2.3:o:cisco:asyncos:13.0.5-007:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_email_and_web_manager_virtual_appliance_m300v:-:*:*:*:*:*:*:* |
|
Summary |
|
|
References | () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-multi-yKUJhS34 - Vendor Advisory |
05 Feb 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-05 17:15
Updated : 2025-08-06 16:53
NVD link : CVE-2025-20185
Mitre link : CVE-2025-20185
CVE.ORG link : CVE-2025-20185
JSON object : View
Products Affected
cisco
- secure_email_and_web_manager_m390
- secure_email_and_web_manager_virtual_appliance_m300v
- secure_email_and_web_manager_m695
- secure_email_and_web_manager_m195
- asyncos
- secure_email_and_web_manager_m390x
- secure_email_and_web_manager_m395
- secure_email_and_web_manager_m690
- secure_email_and_web_manager_m690x
- secure_email_and_web_manager_m680
- secure_email_and_web_manager_virtual_appliance_m600v
- secure_email_and_web_manager_m190
- secure_email_and_web_manager_m380
- secure_email_and_web_manager_virtual_appliance_m100v
- secure_email_and_web_manager_m170
CWE
CWE-250
Execution with Unnecessary Privileges