漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to release 5.8 patch 9 could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerability is due to insecure deserialization of user-supplied content by the affected software. An attacker could exploit this vulnerability by sending a crafted serialized Java object. An exploit could allow the attacker to execute arbitrary commands on the device with root privileges. Cisco Bug IDs: CSCvh25988.
漏洞信息
N/A
漏洞
输入验证不恰当
漏洞
Cisco Secure Access Control System 安全漏洞
漏洞信息
Cisco Secure Access Control System(ACS)是美国思科(Cisco)公司的一套安全访问控制系统。该系统可通过RADIUS、TACACS协议分别对网络访问和网络设备访问进行控制。 Cisco Secure ACS 5.8 patch 9之前的版本中存在Java反序列化漏洞,该漏洞源于程序没有安全的反序列化用户提交的内容。远程攻击者可通过发送特制的序列化Java对象利用该漏洞以root权限执行任意命令。
漏洞信息
N/A
漏洞
N/A