漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
Cisco Enterprise NFV Infrastructure Software Command Injection Vulnerability
漏洞信息
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform a command injection attack and execute arbitrary commands with root privileges. The vulnerability is due to insufficient input validation by the web portal framework. An attacker could exploit this vulnerability by providing malicious input during web portal authentication. A successful exploit could allow the attacker to execute arbitrary commands with root privileges on the underlying operating system.
漏洞信息
N/A
漏洞
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
漏洞
Cisco Enterprise NFV Infrastructure Software 输入验证错误漏洞
漏洞信息
Cisco Enterprise NFV Infrastructure Software(NFVIS)是美国思科(Cisco)公司的一套NVF基础架构软件平台。该平台可以通过中央协调器和控制器实现虚拟化服务的全生命周期管理。 Cisco Enterprise NFVIS 3.6.2版本至3.8.1版本中的Web门户存在输入验证错误漏洞,该漏洞源于Web门户框架没有进行充分的输入验证。远程攻击者可借助恶意的输入利用该漏洞以root权限执行任意命令。
漏洞信息
N/A
漏洞
N/A