A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to obtain sensitive network information.
History

Thu, 31 Jul 2025 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Cisco asyncos
Cisco secure Email And Web Manager M170
Cisco secure Email And Web Manager M190
Cisco secure Email And Web Manager M195
Cisco secure Email And Web Manager M380
Cisco secure Email And Web Manager M390
Cisco secure Email And Web Manager M390x
Cisco secure Email And Web Manager M395
Cisco secure Email And Web Manager M680
Cisco secure Email And Web Manager M690
Cisco secure Email And Web Manager M690x
Cisco secure Email And Web Manager M695
CPEs cpe:2.3:a:cisco:content_security_management_appliance:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_email_and_web_manager:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m170:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m190:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m195:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m380:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m390:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m390x:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m395:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m680:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m690:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m690x:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:secure_email_and_web_manager_m695:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:asyncos:11.0.0-128:*:*:*:*:*:*:*
Vendors & Products Cisco content Security Management Appliance
Cisco asyncos
Cisco secure Email And Web Manager M170
Cisco secure Email And Web Manager M190
Cisco secure Email And Web Manager M195
Cisco secure Email And Web Manager M380
Cisco secure Email And Web Manager M390
Cisco secure Email And Web Manager M390x
Cisco secure Email And Web Manager M395
Cisco secure Email And Web Manager M680
Cisco secure Email And Web Manager M690
Cisco secure Email And Web Manager M690x
Cisco secure Email And Web Manager M695

Thu, 31 Jul 2025 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Cisco content Security Management Appliance
CPEs cpe:2.3:a:cisco:content_security_management_appliance:11.0.0-128:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_email_and_web_manager:11.0.0-128:*:*:*:*:*:*:*
Vendors & Products Cisco content Security Management Appliance

Tue, 04 Mar 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 04 Mar 2025 18:30:00 +0000

Type Values Removed Values Added
Description A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to obtain sensitive network information.
Title Cisco Content Security Management Appliance Information Disclosure Vulnerability
Weaknesses CWE-284
References
Metrics cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2025-03-04T18:22:12.411Z

Updated: 2025-03-04T18:27:11.025Z

Reserved: 2019-12-12T00:00:00.000Z

Link: CVE-2020-3122

cve-icon Vulnrichment

Updated: 2025-03-04T18:27:06.360Z

cve-icon NVD

Status : Analyzed

Published: 2025-03-04T19:15:36.890

Modified: 2025-07-31T19:44:34.333

Link: CVE-2020-3122

cve-icon Redhat

No data.