漏洞标题
Cisco ExpressSeries 和 TelePresence Video Communication Server 远程代码执行漏洞
漏洞描述信息
Cisco Expressway系列和TelePresence视频通信服务器远程代码执行漏洞
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
Cisco Expressway Series and TelePresence Video Communication Server Remote Code Execution Vulnerability
漏洞描述信息
A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker to execute arbitrary code on the underlying operating system as the root user. This vulnerability is due to incorrect handling of certain crafted software images that are uploaded to the affected device. An attacker could exploit this vulnerability by authenticating to the system as an administrative user and then uploading specific crafted software images to the affected device. A successful exploit could allow the attacker to execute arbitrary code on the underlying operating system as the root user.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L
漏洞类别
抛出异常的清理不恰当
漏洞标题
Cisco Expressway Series和Cisco TelePresence Video Communication Server 安全漏洞
漏洞描述信息
Cisco Expressway Series和Cisco TelePresence Video Communication Server(VCS)都是美国思科(Cisco)公司的产品。Cisco Expressway Series是一款用于防火墙外访问设备的软件。该软件为防火墙外的用户提供了简单、高度安全的访问功能,帮助远程办公人员在他们选择的设备上更有效地工作。Cisco TelePresence Video Communication Server是一款视频通信服务器。 Cisco Expressw
CVSS信息
N/A
漏洞类别
其他