Language:
Severity: High
ID: 166911
File Name: cisco-sa-esa-sqli-privesc-YRuSW5mD.nasl
Version: 1.13
Type: combined
Family: CISCO
Published: 11/3/2022
Updated: 9/21/2023
Supported Sensors: Nessus
Risk Factor: Medium
Score: 5.9
Risk Factor: High
Base Score: 9
Temporal Score: 6.7
Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C
CVSS Score Source: CVE-2022-20868
Risk Factor: High
Base Score: 8.8
Temporal Score: 7.7
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/a:cisco:email_security_appliance, cpe:/o:cisco:email_security_appliance_firmware
Required KB Items: Host/AsyncOS/Cisco Email Security Appliance/Version
Exploit Ease: No known exploits are available
Patch Publication Date: 11/2/2022
Vulnerability Publication Date: 11/2/2022
CVE: CVE-2022-20867, CVE-2022-20868