Cisco IOS和IOS XE都是美国思科(Cisco)公司的一套为其网络设备开发的操作系统。 Cisco IOS和IOS XE中的common Session Initiation Protocol (SIP)库存在代码问题漏洞,该漏洞源于程序没有对内部数据结构进行可用性测试。远程攻击者可通过发送恶意的SIP消息利用该漏洞造成空指针逆向引用,导致iosd进程崩溃。以下产品及版本受到影响:Cisco Unified Border Element (CUBE);Unified Communications
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco IOS 15.0(1)XA2 | unspecified ~ n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-12709 | Cisco IOS XR Software for Cisco ASR 9000 VMAN CLI Privilege Escalation Vulnerability | |
| CVE-2019-12646 | Cisco IOS XE Software NAT Session Initiation Protocol Application Layer Gateway Denial of | |
| CVE-2019-12650 | Cisco IOS XE Software Web UI Command Injection Vulnerabilities | |
| CVE-2019-12649 | Cisco IOS XE Software Digital Signature Verification Bypass Vulnerability | |
| CVE-2019-12648 | Cisco IOx for IOS Software Guest Operating System Unauthorized Access Vulnerability | |
| CVE-2019-12647 | Cisco IOS and IOS XE Software IP Ident Denial of Service Vulnerability | |
| CVE-2019-12651 | Cisco IOS XE Software Web UI Command Injection Vulnerabilities | |
| CVE-2019-12653 | Cisco IOS XE Software Raw Socket Transport Denial of Service Vulnerability | |
| CVE-2019-12665 | Cisco IOS and IOS XE Software HTTP Client Information Disclosure Vulnerability | |
| CVE-2019-12663 | Cisco IOS XE Software TrustSec Protected Access Credential Provisioning Denial of Service | |
| CVE-2019-12661 | Cisco IOS XE Software Virtualization Manager CLI Command Injection Vulnerability | |
| CVE-2019-12659 | Cisco IOS XE Software HTTP Server Denial of Service Vulnerability | |
| CVE-2019-12657 | Cisco IOS XE Software Unified Threat Defense Denial of Service Vulnerability | |
| CVE-2019-12655 | Cisco IOS XE Software FTP Application Layer Gateway for NAT, NAT64, and ZBFW Denial of Ser | |
| CVE-2019-12672 | Cisco IOS XE Software Arbitrary Code Execution Vulnerability | |
| CVE-2019-12671 | Cisco IOS XE Software Consent Token Bypass Vulnerability | |
| CVE-2019-12669 | Cisco IOS and IOS XE Software Change of Authorization Denial of Service Vulnerability | |
| CVE-2019-12667 | Cisco IOS XE Software Stored Cross-Site Scripting Vulnerability | |
| CVE-2019-12658 | Cisco IOS XE Software Filesystem Exhaustion Denial of Service Vulnerability | |
| CVE-2019-12656 | Cisco IOx Application Environment Denial of Service Vulnerability |
Showing top 20 of 29 CVEs. View all on vendor page → →
No comments yet