Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the update process for the dynamic JAR file of the Cisco Context Service software development kit (SDK) could allow an unauthenticated, remote attacker to execute arbitrary code on the affected device with the privileges of the web server. More Information: CSCvb66730. Known Affected Releases: 2.0.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Context Service SDK 输入验证漏洞
Vulnerability Description
Cisco Context Service SDK是美国思科(Cisco)公司的一套用于Context服务的软件开发工具包。 Cisco Context Service SDK 2.0版本中的JAR文件的更新进程存在任意代码执行漏洞,该漏洞源于程序没有正确的过滤用户提交的输入。远程攻击者可通过实施中间人攻击利用该漏洞以Web服务器权限在受影响的设备上执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A