漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell of an affected device and execute arbitrary commands with root privileges on the device. The vulnerability is due to the affected software improperly sanitizing command arguments to prevent access to internal data structures on a device. An attacker who has privileged EXEC mode (privilege level 15) access to an affected device could exploit this vulnerability on the device by executing CLI commands that contain crafted arguments. A successful exploit could allow the attacker to gain access to the underlying Linux shell of the affected device and execute arbitrary commands with root privileges on the device. Cisco Bug IDs: CSCuv91356.
漏洞信息
N/A
漏洞
权限、特权和访问控制
漏洞
Cisco 4000 Series Integrated Services Router IOS XE Software CLI解析器权限许可和访问控制漏洞
漏洞信息
Cisco 4000 Series Integrated Services Router是美国思科(Cisco)公司的一款4000系列的路由器产品。IOS XE Software是运行在其中的一套Cisco设备专用的操作系统。CLI parser是其中的一个命令行命令解析器。 Cisco 4000 Series Integrated Services Router中的IOS XE Software中的CLI解析器存在提权漏洞,该漏洞源于程序没有正确的过滤命令参数。本地攻击者可通过执行带有特制参数的CLI命
漏洞信息
N/A
漏洞
N/A