Cisco Web Security Appliance(WSA)是美国思科(Cisco)公司的一款Web安全设备。该设备提供基于SaaS的访问控制、实时网络报告和追踪、制定安全策略等功能。AsyncOS Software是使用在其中的一套操作系统。 Cisco WSA中的AsyncOS Software的Web代理功能存在输入验证错误漏洞,该漏洞源于程序没有对通过受影响设备所发送的HTTP/HTTPS请求中的字段进行充分地输入验证。远程攻击者可通过发送恶意的HTTP/HTTPS请求利用该漏洞造成流量处理
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Web Security Appliance (WSA) | unspecified ~ 10.5.5-005 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-1890 | Cisco Nexus 9000 Series Fabric Switches ACI Mode Fabric Infrastructure VLAN Unauthorized A | |
| CVE-2019-1889 | Cisco Application Policy Infrastructure Controller REST API Privilege Escalation Vulnerabi | |
| CVE-2019-1855 | Cisco Jabber for Windows DLL Preloading Vulnerability | |
| CVE-2019-1886 | Cisco Web Security Appliance HTTPS Certificate Denial of Service Vulnerability |
No comments yet