漏洞标题
Cisco DNA中心特权升级漏洞
漏洞描述信息
思科DNA中心权限提升漏洞
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
Cisco DNA Center Privilege Escalation Vulnerability
漏洞描述信息
A vulnerability in the management API of Cisco DNA Center could allow an authenticated, remote attacker to elevate privileges in the context of the web-based management interface on an affected device. This vulnerability is due to the unintended exposure of sensitive information. An attacker could exploit this vulnerability by inspecting the responses from the API. Under certain circumstances, a successful exploit could allow the attacker to access the API with the privileges of a higher-level user account. To successfully exploit this vulnerability, the attacker would need at least valid Observer credentials.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
漏洞类别
信息暴露
漏洞标题
Cisco DNA Center 安全漏洞
漏洞描述信息
Cisco DNA Center是美国思科(Cisco)公司的一个网络管理和命令中心服务。 Cisco DNA Center 存在安全漏洞,该漏洞源于敏感信息的意外暴露。
CVSS信息
N/A
漏洞类别
其他