Cisco Elastic Services Controller(ESC)是美国思科(Cisco)公司的一个开源的模块化系统。ConfD CLI是其中的一个模块。 Cisco Elastic Services Controller中的ConfD CLI中存在安全漏洞,该漏洞源于管理员用户使用了默认的硬编码密码。远程攻击者可利用该漏洞以管理员用户身份登录受影响系统。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Cisco Elastic Services Controller | Cisco Elastic Services Controller | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-6671 | Cisco Email Security Appliance AsyncOS Software 输入验证漏洞 | |
| CVE-2017-6691 | Cisco Elastic Services Controller ConfD CLI 信息泄露漏洞 | |
| CVE-2017-6694 | Cisco Ultra Services Platform 信息泄露漏洞 | |
| CVE-2017-6693 | Cisco Elastic Services Controller ConfD服务器组件安全漏洞 | |
| CVE-2017-6692 | Cisco Ultra Services Framework Element Manager 安全漏洞 | |
| CVE-2017-6681 | Cisco Ultra Services Framework 信息泄露漏洞 | |
| CVE-2017-6680 | Cisco Ultra Services Framework 安全漏洞 | |
| CVE-2017-6675 | Cisco Industrial Network Director 跨站脚本漏洞 | |
| CVE-2017-6674 | Cisco Firepower System Software 安全漏洞 | |
| CVE-2017-6673 | Cisco Firepower Management Center 信息泄露漏洞 | |
| CVE-2017-6682 | Cisco Elastic Services Controller ConfD CLI 操作系统命令注入漏洞 | |
| CVE-2017-6670 | Cisco Unified Communications Domain Manager 安全漏洞 | |
| CVE-2017-6668 | Cisco Unified Communications Domain Manager SQL注入漏洞 | |
| CVE-2017-6667 | Cisco Context Service SDK 输入验证漏洞 | |
| CVE-2017-6666 | Cisco Network Convergence System 5500 Series IOS XR Software forwarding组件资源管理错误漏洞 | |
| CVE-2017-6661 | Cisco Email Security和Content Security Management Appliance 跨站脚本漏洞 | |
| CVE-2017-6659 | Cisco Prime Collaboration Assurance 跨站请求伪造漏洞 | |
| CVE-2017-6656 | Cisco IP Phone 8800 Series 安全漏洞 | |
| CVE-2017-6655 | Cisco NX-OS Software 安全漏洞 | |
| CVE-2017-4994 | Pivotal Cloud Foundry和UAA 安全漏洞 |
Showing top 20 of 62 CVEs. View all on vendor page → →
No comments yet