A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attacker to read sensitive information of other users on an affected device. The vulnerability is due to insufficient authorization limitations. An attacker could exploit this vulnerability by logging in to an affected device locally with valid credentials. A successful exploit could allow the attacker to read the sensitive information of other users on the affected device.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: cisco
Published: 2020-06-03T17:56:32.755Z
Updated: 2024-11-15T17:10:20.742Z
Reserved: 2019-12-12T00:00:00.000Z
Link: CVE-2020-3335
Updated: 2024-08-04T07:30:57.829Z
Status : Modified
Published: 2020-06-03T18:15:22.447
Modified: 2024-11-21T05:30:49.523
Link: CVE-2020-3335
No data.