Path traversal in Secure Email Gateway and Cisco AsyncOS for Secure Email Gateway - CVE-2024-20401

 

Path traversal in Secure Email Gateway and Cisco AsyncOS for Secure Email Gateway - CVE-2024-20401

Published: July 17, 2024


Vulnerability identifier: #VU94505
CSH Severity: Critical
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-20401
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to overwrite arbitrary files on the system.

The vulnerability exists due to input validation error when processing email attachments if file analysis and content filters are enabled. A remote attacker can send a specially crafted email attachment and overwrite arbitrary files on the system with root privileges.

Successful exploitation of the vulnerability may result in complete system compromise.


Affected software

Secure Email Gateway
Cisco AsyncOS for Secure Email Gateway

How to mitigate CVE-2024-20401

Install update from vendor's website.

Secure Email Gateway - addressed in versions 13.0.5-007, 13.5.4-038, 14.2.2-004, 14.3.0-032, 15.0.0-104, 15.0.1-030, 15.5.1-055
Cisco AsyncOS for Secure Email Gateway - addressed in versions 13.0.5-007, 13.5.4-038, 14.2.2-004, 14.3.0-032, 15.0.0-104, 15.0.1-030, 15.5.1-055

External References

Related Security Bulletins