Cisco IOS XE是美国思科(Cisco)公司的一套为其网络设备开发的操作系统。 Cisco IOS XE Software中的Virtual Services Container存在输入验证错误漏洞,该漏洞源于程序没有充分验证用户提供的OVA(开放式虚拟设备)。攻击者可通过在受影响的设备上安装恶意的OVA利用该漏洞获得受影响设备上的root权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco IOS XE Software 3.8.0S | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-3353 | 5.9 MEDIUM | Cisco Identity Services Engine Denial of Service Vulnerability |
| CVE-2020-3319 | 3.3 LOW | Cisco Webex Network Recording Player and Cisco Webex Player Denial of Service Vulnerabilit |
| CVE-2020-3322 | 3.3 LOW | Cisco Webex Network Recording Player and Cisco Webex Player Denial of Service Vulnerabilit |
| CVE-2020-3321 | 3.3 LOW | Cisco Webex Network Recording Player and Cisco Webex Player Denial of Service Vulnerabilit |
| CVE-2020-3333 | Cisco Application Services Engine Software Unauthenticated Event Policies Update Vulnerabi | |
| CVE-2020-3257 | Cisco IOx Application Environment for IOS Software for Cisco Industrial Routers Vulnerabil | |
| CVE-2020-3267 | Cisco Unified Contact Center Express Improper API Authorization Vulnerability | |
| CVE-2020-3258 | Cisco IOS Software for Cisco Industrial Routers Arbitrary Code Execution Vulnerabilities | |
| CVE-2020-3281 | Cisco Digital Network Architecture Center Information Disclosure Vulnerability | |
| CVE-2020-3232 | Cisco ASR 920 Series Aggregation Services Router Model 12SZ-IM SNMP Denial of Service Vuln | |
| CVE-2020-3200 | Cisco IOS and IOS XE Software Secure Shell Denial of Service Vulnerability | |
| CVE-2020-3199 | Cisco IOx Application Environment for IOS Software for Cisco Industrial Routers Vulnerabil | |
| CVE-2020-3198 | Cisco IOS Software for Cisco Industrial Routers Arbitrary Code Execution Vulnerabilities | |
| CVE-2020-3228 | Cisco IOS, IOS XE, and NX-OS Software Security Group Tag Exchange Protocol Denial of Servi | |
| CVE-2020-3231 | Cisco IOS Software for Catalyst 2960-L Series Switches and Catalyst CDB-8P Switches 802.1X | |
| CVE-2020-3230 | Cisco IOS and IOS XE Software Internet Key Exchange Version 2 Denial of Service Vulnerabil | |
| CVE-2020-3229 | Cisco IOS XE Software Web UI Privilege Escalation Vulnerability | |
| CVE-2020-3227 | Cisco IOx for IOS XE Software Privilege Escalation Vulnerability | |
| CVE-2020-3225 | Cisco IOS and IOS XE Software Common Industrial Protocol Denial of Service Vulnerabilities | |
| CVE-2020-3233 | Cisco IOx Application Framework Local Manager Stored Cross-Site Scripting Vulnerability |
Showing top 20 of 50 CVEs. View all on vendor page → →
No comments yet