Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in the web framework in Cisco Security Manager 4.2 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct redirection attacks via a crafted URL, aka Bug ID CSCun82349.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Security Manager CRLF注入漏洞
Vulnerability Description
Cisco Security Manager(CSM)是美国思科(Cisco)公司的一套企业级的管理应用,它主要用于在Cisco网络和安全设备上配置防火墙、VPN和入侵保护安全服务。 Cisco Security Manager 4.2及之前版本的Web框架中存在CRLF注入漏洞。远程攻击者可借助特制的URL利用该漏洞注入任意HTTP头,实施重定向攻击。
CVSS Information
N/A
Vulnerability Type
N/A