Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Read-Only User Effect Change vulnerability in the Policy Builder interface of Cisco Policy Suite could allow an authenticated, remote attacker to make policy changes in the Policy Builder interface. The vulnerability is due to insufficient authorization controls. An attacker could exploit this vulnerability by accessing the Policy Builder interface and modifying an HTTP request. A successful exploit could allow the attacker to make changes to existing policies. Cisco Bug IDs: CSCvi35007.
CVSS Information
N/A
Vulnerability Type
授权机制不恰当
Vulnerability Title
Cisco Policy Suite 安全漏洞
Vulnerability Description
Cisco Policy Suite(CPS)是美国思科(Cisco)公司的一套下一代策略管理解决方案。该方案提供了基于用户的业务规则、应用程序和网络资源的实时管理等功能。 Cisco Policy Suite中的Policy Builder界面存在安全漏洞,该漏洞源于程序没有充分的执行授权控制。远程攻击者可通过访问Policy Builder界面并修改HTTP请求利用该漏洞更改现有的策略。
CVSS Information
N/A
Vulnerability Type
N/A