← Back to browse · API

CVE-2020-3140

Severity
CRITICAL
CVSS
9.8
EPSS
0.03079
Risk score
40.28
CISA KEV
No
PoC
No
Published
2020-07-16
Modified
2024-11-15
First seen
2026-08-07
Aliases
EUVD-2020-24411, GHSA-875H-7JQ2-C5FP
Products
Cisco:Cisco Prime License Manager n/a
Sources
euvd EUVD-2020-24411

Description

A vulnerability in the web management interface of Cisco Prime License Manager (PLM) Software could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to insufficient validation of user input on the web management interface. An attacker could exploit this vulnerability by submitting a malicious request to an affected system. An exploit could allow the attacker to gain administrative-level privileges on the system. The attacker needs a valid username to exploit this vulnerability.

References