Cisco Enterprise NFV Infrastructure Software(NFVIS)是美国思科(Cisco)公司的一套NVF基础架构软件平台。该平台可以通过中央协调器和控制器实现虚拟化服务的全生命周期管理。 Cisco Enterprise NFVIS 3.12.1之前版本中Virtual Network Computing (VNC)控制台的实现存在访问控制错误漏洞。远程攻击者可通过在登录之前拦截管理员VNC会话利用该漏洞访问管理用户的VNC控制台会话。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Enterprise NFV Infrastructure Software | unspecified ~ 3.12.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-1945 | Cisco Adaptive Security Appliance Smart Tunnel Vulnerabilities | |
| CVE-2019-1928 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1929 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1934 | Cisco Adaptive Security Appliance Software Web-Based Management Interface Privilege Escala | |
| CVE-2019-1944 | Cisco Adaptive Security Appliance Smart Tunnel Vulnerabilities | |
| CVE-2019-1926 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1927 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1918 | Cisco IOS XR Software Intermediate System–to–Intermediate System Denial of Service Vulnera | |
| CVE-2019-1924 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1925 | Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulne | |
| CVE-2019-1910 | Cisco IOS XR Software Intermediate System to Intermediate System Denial of Service Vulnera | |
| CVE-2019-1913 | Cisco Small Business 220 Series Smart Switches Remote Code Execution Vulnerabilities | |
| CVE-2019-1914 | Cisco Small Business 220 Series Smart Switches Command Injection Vulnerability | |
| CVE-2019-1912 | Cisco Small Business 220 Series Smart Switches Authentication Bypass Vulnerability |
No comments yet