漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Cisco Webex Meetings Server Open Redirection Vulnerability
Vulnerability Description
A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthenticated, remote attacker to redirect a user to an undesired web page. The vulnerability is due to improper input validation of the URL parameters in an HTTP request that is sent to an affected device. An attacker could exploit this vulnerability by crafting an HTTP request that could cause the web application to redirect the request to a specified malicious URL. A successful exploit could allow the attacker to redirect a user to a malicious website.
CVSS Information
N/A
Vulnerability Type
指向未可信站点的URL重定向(开放重定向)
Vulnerability Title
Cisco WebEx Meetings Server 输入验证错误漏洞
Vulnerability Description
Cisco WebEx Meetings Server(CWMS)是WebEx会议方案中的一套包含音频、视频和Web会议的多功能会议解决方案。 Cisco CWMS 4.0(1)之前版本中的Web管理界面存在输入验证错误漏洞,该漏洞源于程序没有对HTTP请求中的URL参数执行正确的输入验证。远程攻击者可通过发送HTTP请求利用该漏洞将用户重定向恶意的网站。
CVSS Information
N/A
Vulnerability Type
N/A