Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote attacker to conduct a cross-site scripting (XSS) attack against a user of the affected interface or hijack a valid session ID from a user of the affected interface. Cisco Bug IDs: CSCvf71978, CSCvf71986.
CVSS Information
N/A
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Cisco UCS Central Software 安全漏洞
Vulnerability Description
Cisco UCS Central Software是美国思科(Cisco)公司的一套对全球Cisco UCS(统一计算系统)资源进行服务器管理及监控的解决方案。 Cisco UCS Central Software中的基于Web的管理界面存在会话固定漏洞。远程攻击者可利用该漏洞从基于Web的管理界面中劫持有效的会话ID。
CVSS Information
N/A
Vulnerability Type
N/A