#VU62467 Protection Mechanism Failure in Umbrella Secure Web Gateway


Published: 2022-04-21

Vulnerability identifier: #VU62467

Vulnerability risk: Low

CVSSv3.1: 3.6 [CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N/E:U/RL:O/RC:C]

CVE-ID: CVE-2022-20805

CWE-ID: CWE-693

Exploitation vector: Local network

Exploit availability: No

Vulnerable software:
Umbrella Secure Web Gateway
Other software / Other software solutions

Vendor: Cisco Systems, Inc

Description

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to insufficient implementation of security measures in the automatic decryption process. A remote user on the local network can bypass the decryption process and download malicious content to a host on a protected network.

Mitigation
Install updates from vendor's website.

Vulnerable software versions

Umbrella Secure Web Gateway: All versions


External links
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-uswg-fdbps-xtTRKpp6


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote authenticated user via the local network (LAN).

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability