VDB
CVE-2025-20185
CVE-2025-20185
PUBLISHED
Es besteht eine Schwachstelle in der Cisco AsyncOS Software für Cisco Secure Email and Web Manager, Cisco Secure Email Gateway und Cisco Secure Web Appliance. Aufgrund eines Architekturfehlers im Algorithmus zur Generierung von Passwörtern für die Fernzugriffsfunktionalität kann ein temporäres Passwort für das Dienstkonto generiert werden. Ein entfernter, authentisierter Angreifer mit administrativen Berechtigungen kann diese Schwachstelle ausnutzen, um Root-Rechte zu erlangen, beliebige Befehle als Root auszuführen und Zugriff auf das zugrunde liegende Betriebssystem zu erhalten.
EPSS 0.02% · 6.4th percentile
Risk Scores
EPSS Score
0.02%
6.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Cisco AsyncOS Web Appliance <15.0.1-004 | |
| Cisco | Cisco Secure Email Gateway <15.0.3-002 | |
| Cisco | Cisco AsyncOS Email and Web Manager <16.0.1-010 | |
| Cisco | Cisco AsyncOS Email and Web Manager <15.5.3-017 | |
| Cisco | Cisco Secure Email Gateway <15.5.2-018 | |
| Cisco | Cisco AsyncOS Email Gateway <16.0.1-017 | |
| Cisco | Cisco Secure Web Appliance <15.2.1-010 | |
| Cisco | Cisco Secure Web Appliance <15.0.1-004 | |
| Cisco | Cisco Secure Email Gateway <16.0.0-050 | |
| Cisco | Cisco AsyncOS Web Appliance <15.2.1-011 | |
| Cisco | Cisco AsyncOS Web Appliance <15.2.2-009 | |
| Cisco | Cisco AsyncOS Email Gateway <15.5.3-022 |
Exploit Intelligence
- CIRCL seen: CVE-2025-20185 (circl-sighting)
- CIRCL seen: CVE-2025-20185 (circl-sighting)
- CIRCL seen: CVE-2025-20185 (circl-sighting)
- cisco-sa-esa-sma-wsa-multi-yKUJhS34 (circl)
Timeline
- Oct 10, 2024 CVE ID Reserved
- Feb 5, 2025 CVE Published
- Feb 5, 2025 PoC Published
- Feb 5, 2025 CVE Updated
- Feb 5, 2025 PoC Published
- Feb 5, 2025 PoC Published
- Feb 6, 2025 EPSS Score
- Feb 21, 2025 EPSS Score
- Feb 22, 2025 Coalition ESS Score
- Mar 8, 2025 EPSS Score
- Mar 22, 2025 EPSS Score
- Apr 6, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-0276.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0276 advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-multi-yKUJhS34 advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-snmp-inf-FqPvL8sX advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-xss-WCk2WcuG advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-swa-range-bypass-2BsEHYSu advisory