Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the web interface of Cisco License Manager software could allow an unauthenticated, remote attacker to download and view files within the application that should be restricted, aka Directory Traversal. The issue is due to improper sanitization of user-supplied input in HTTP request parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location. An exploit could allow the attacker to view application files that may contain sensitive information. Cisco Bug IDs: CSCvd83577.
CVSS Information
N/A
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
Cisco License Manager software 路径遍历漏洞
Vulnerability Description
Cisco License Manager software是美国思科(Cisco)公司的一套许可证书管理软件。该软件用于激活Cisco设备及软件,并在线获取设备许可证或产品秘钥。 Cisco License Manager software中的Web界面存在路径遍历漏洞,该漏洞源于程序没有正确的过滤HTTP请求参数中用户的输入。远程攻击者可利用该漏洞下载并查看应用程序中的文件。
CVSS Information
N/A
Vulnerability Type
N/A