Cisco Enterprise Chat and Email(CEC)是美国思科(Cisco)公司的一套企业聊天和电子邮件解决方案。该产品主要为其它Cisco解决方案提供电子邮件、聊天和Web回调功能等。 Cisco CEC中的基于Web的管理界面存在跨站脚本漏洞,该漏洞源于程序没有充分地验证用户提交的输入。远程攻击者可通过诱使用户点击特制的链接或打开对话窗口利用该漏洞执行任意脚本或访问基于浏览器的敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Enterprise Chat and Email | 11.6(1) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-1610 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1610) | |
| CVE-2019-1611 | Cisco FXOS and NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1611) | |
| CVE-2019-1612 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1612) | |
| CVE-2019-1613 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1613) | |
| CVE-2019-1614 | Cisco NX-OS Software NX-API Command Injection Vulnerability | |
| CVE-2019-1615 | Cisco NX-OS Software Image Signature Verification Vulnerability | |
| CVE-2019-1616 | Cisco NX-OS Software Cisco Fabric Services Denial of Service Vulnerability | |
| CVE-2019-1617 | Cisco Nexus 9000 Series Switches Standalone NX-OS Mode Fibre Channel over Ethernet NPV Den | |
| CVE-2019-1618 | Cisco Nexus 9000 Series Switches Standalone NX-OS Mode Tetration Analytics Agent Arbitrary | |
| CVE-2019-1690 | Cisco Application Policy Infrastructure Controller IPv6 Link-Local Address Vulnerability | |
| CVE-2019-1707 | Cisco DNA Center Access Contract Stored Cross-Site Scripting Vulnerability |
No comments yet