Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco 9900 IP电话Serviceability servlet权限许可和访问控制漏洞
Vulnerability Description
Cisco 9900 IP Phones是美国思科(Cisco)公司的9900系列IP电话产品。该产品提供了语音、视频功能。 Cisco 9900 IP电话中的Serviceability servlet中存在安全漏洞,该漏洞源于程序没有完全过滤路径值。远程攻击者可通过提交包含合法路径的文件请求利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A