Cisco Content Service交换机管理认证绕过漏洞

漏洞信息详情

Cisco Content Service交换机管理认证绕过漏洞

漏洞简介

Cisco Content Service系列11000交换机(CSS) WebNS 4.01B29s之前版本或WebNS 4.10B17s版本的web管理服务存在漏洞。远程攻击者可以通过直接请求web管理URL而不是凭借界面操作来提升额外特权。

漏洞公告

*** Cisco has announced that their previously released update does not fully resolve this issue. This vulnerability will be fixed in versions of WebNS expected to be released in December 2002 or January 2003.

参考网址

来源: CISCO
名称: 20010531 Cisco Content Service Switch 11000 Series Web Management Vulnerability
链接:http://www.cisco.com/warp/public/707/arrowpoint-webmgmt-vuln-pub.shtml

来源: XF
名称: cisco-css-web-management(6631)
链接:http://xforce.iss.net/static/6631.php

来源: BID
名称: 2806
链接:http://www.securityfocus.com/bid/2806

来源: OSVDB
名称: 1848
链接:http://www.osvdb.org/1848

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享