CVE-2022-20664 is a high-severity vulnerability in the web management interface of Cisco Secure Email and Web Manager and Cisco Email Security Appliance. It allows an authenticated, remote attacker to retrieve sensitive information, including user credentials, from an external LDAP authentication server due to improper input sanitization. The vulnerability has a CVSS score of 7.7 (High) and requires valid operator-level or higher credentials for exploitation. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing. Community discussion and media coverage are minimal, suggesting limited public awareness or active threat actor interest at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 14.0.2-020CPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:*:*:*:*:*:*:*:* | ||
< 13.6.2-090CPE matchmatch criteria | cpe:2.3:a:cisco:secure_email_and_web_manager:*:*:*:*:*:*:*:* | ||
>= 14.1, < 14.1.0-227CPE matchmatch criteria | cpe:2.3:a:cisco:secure_email_and_web_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.