漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Cisco Data Center Network Manager Privilege Escalation Vulnerability
Vulnerability Description
A vulnerability in the CLI of Cisco Data Center Network Manager (DCNM) could allow an authenticated, local attacker to elevate privileges to root and execute arbitrary commands on the underlying operating system. The vulnerability is due to insufficient restrictions during the execution of an affected CLI command. An attacker could exploit this vulnerability by authenticating as the fmserver user and submitting malicious input to a specific command. A successful exploit could allow the attacker to elevate privileges to root and execute arbitrary commands on the underlying operating system.
CVSS Information
N/A
Vulnerability Type
参数注入或修改
Vulnerability Title
Cisco Data Center Network Manager 参数注入漏洞
Vulnerability Description
Cisco Data Center Network Manager(DCNM)是美国思科(Cisco)公司的一套数据中心管理系统。该系统适用于Cisco Nexus和MDS系列交换机,提供存储可视化、配置和故障排除等功能。 Cisco Data Center Network Manager 11.4(1)之前版本中的CLI存在参数注入漏洞,该漏洞源于在执行受影响的CLI命令时程序没有充分进行限制。本地攻击者可借助恶意输入利用该漏洞在系统上以root身份执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A