Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Cisco Network Services Orchestrator Information Disclosure Vulnerability
Vulnerability Description
A vulnerability in the CLI of Cisco Network Services Orchestrator (NSO) could allow an authenticated, local attacker to access confidential information on an affected device. The vulnerability is due to a timing issue in the processing of CLI commands. An attacker could exploit this vulnerability by executing a specific sequence of commands on the CLI. A successful exploit could allow the attacker to read configuration information that would normally be accessible to administrators only.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
信息暴露
Vulnerability Title
Cisco Network Services Orchestrator 信息泄露漏洞
Vulnerability Description
Cisco Network Services Orchestrator(NSO)是美国思科(Cisco)公司的一套网络自动化服务解决方案。 Cisco NSO Release 4.7.7.3之前版本和Release 5.1.4.2之前版本中的CLI存在信息泄露漏洞。本地攻击者可通过执行特定序列的命令利用该漏洞访问敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A