cisco prime-license-manager CVE-2020-3140 is a vulnerability in Cisco Prime License Manager
Published on July 16, 2020

Cisco Prime License Manager Privilege Escalation Vulnerability
A vulnerability in the web management interface of Cisco Prime License Manager (PLM) Software could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to insufficient validation of user input on the web management interface. An attacker could exploit this vulnerability by submitting a malicious request to an affected system. An exploit could allow the attacker to gain administrative-level privileges on the system. The attacker needs a valid username to exploit this vulnerability.

Vendor Advisory NVD

Weakness Type

Credentials Management Errors

Weaknesses in this category are related to the management of credentials.


Products Associated with CVE-2020-3140

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2020-3140 are published in Cisco Prime License Manager:

 

Affected Versions

Cisco Prime License Manager Version n/a is affected by CVE-2020-3140

Exploit Probability

EPSS
1.66%
Percentile
81.79%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.