Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which allows remote attackers to obtain "root access" to IEV via unspecified use of TCP sessions to these ports.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Security Manager IPS事件查看器远程非授权TCP端口访问漏洞
Vulnerability Description
Cisco Security Manager(CSM)是美国思科(Cisco)公司的一套企业级的管理应用,它主要用于在Cisco网络和安全设备上配置防火墙、VPN和入侵保护安全服务。 Cisco Security Manager服务器中存在漏洞。在启动IPS事件查看器(IEV)时,会在Cisco Security Manager服务器和客户端打开几个远程可用的TCP端口,这些端口可能允许远程未经认证root访问IEV数据库和服务器并执行添加、删除等操作。在关闭IEV时,会关闭启动IEV的Cisco Sec
CVSS Information
N/A
Vulnerability Type
N/A