Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the ConfD server of the Cisco Elastic Services Controller (ESC) could allow an authenticated, remote attacker to acquire sensitive system information. The vulnerability is due to insufficient protection of sensitive files on the system. An attacker could exploit this vulnerability by logging into the ConfD server and executing certain commands. An exploit could allow an unprivileged user to view configuration parameters that can be maliciously used. Cisco Bug IDs: CSCvd76409. Known Affected Releases: 2.3, 2.3(2).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Elastic Services Controller ConfD服务器信息泄露漏洞
Vulnerability Description
Cisco Elastic Services Controller(ESC)是美国思科(Cisco)公司的一个开源的模块化系统。ConfD server是其中的一个配置管理服务器。 Cisco ESC中的ConfD服务器存在信息泄露漏洞,该漏洞源于程序没有充分的保护系统上的敏感文件。远程攻击者可通过登录ConfD服务器并执行特定的命令利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A