VDB
CVE-2024-20439
CVE-2024-20439
PUBLISHED
KEV
CVSS 9.800000190734863 CRITICAL
De multiples vulnérabilités ont été découvertes dans les produits Cisco. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et un contournement de la politique de sécurité.
EPSS 87.15% · 99.5th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
87.15%
99.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Meraki SM Agent | |
| Cisco | Smart Licensing Utility | |
| Cisco | Cisco Smart License Utility | 2.0.0, 2.2.0, 2.1.0 |
| cisco | smart_license_utility | 2.0.0, 2.0.0, 2.0.0 |
| cisco | cisco_smart_license_utility | 2.2.0, 2.1.0, 2.0.0 |
Exploit Intelligence
- CIRCL seen: CVE-2024-20439 (circl-sighting)
- CIRCL seen: CVE-2024-20439 (circl-sighting)
- CIRCL published-proof-of-concept: CVE-2024-20439 (circl-sighting)
- CIRCL seen: CVE-2024-20439 (circl-sighting)
- CIRCL exploited: CVE-2024-20439 (circl-sighting)
- CIRCL published-proof-of-concept: CVE-2024-20439 (circl-sighting)
- CIRCL published-proof-of-concept: CVE-2024-20439 (circl-sighting)
- CIRCL published-proof-of-concept: CVE-2024-20439 (circl-sighting)
- CIRCL exploited: CVE-2024-20439 (circl-sighting)
- CIRCL seen: CVE-2024-20439 (circl-sighting)
…and 181 more exploits
Timeline
- Jan 20, 1970 CrowdSec Sighting
- Jan 20, 1970 CrowdSec Sighting
- Jan 20, 1970 CrowdSec Sighting
- Jan 20, 1970 Nuclei Template
- Jan 20, 1970 Fix Commit
- Jan 21, 1970 CrowdSec Sighting
- Oct 21, 2021 CrowdSec Sighting
- Dec 11, 2021 CrowdSec Sighting
- May 25, 2022 CrowdSec Sighting
- Sep 24, 2022 CrowdSec Sighting
- Oct 1, 2022 CrowdSec Sighting
- Mar 9, 2023 CrowdSec Sighting
References
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cslu-7gHMzWmw advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-meraki-agent-dll-hj-Ptn7PtKe advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-20439 url
- https://nvd.nist.gov/vuln/detail/CVE-2024-20439 advisory