Cisco Data Center Network Manager(DCNM)是美国思科(Cisco)公司的一套数据中心管理系统。该系统适用于Cisco Nexus和MDS系列交换机,提供存储可视化、配置和故障排除等功能。 Cisco DCNM 11.4(1)之前版本中的REST API端点存在输入验证错误漏洞,该漏洞源于程序没有充分进行路径限制。远程攻击者可利用该漏洞覆盖或列出设备上的任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Data Center Network Manager | N/A | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-27124 | 8.6 HIGH | Cisco Adaptive Security Appliance Software SSL/TLS Denial of Service Vulnerability |
| CVE-2020-26071 | 8.4 HIGH | Cisco SD-WAN vEdge Arbitrary File Creation Vulnerability |
| CVE-2020-26074 | 7.8 HIGH | Cisco SD-WAN vManage Privilege Escalation Vulnerability |
| CVE-2020-26073 | 7.5 HIGH | Cisco SD-WAN vManage Directory Traversal Vulnerability |
| CVE-2021-1440 | 6.8 MEDIUM | Cisco IOS XR Software BGP Resource Public Key Infrastructure Denial of Service Vulnerabili |
| CVE-2021-1232 | 6.5 MEDIUM | Cisco SD-WAN vManage Information Disclosure Vulnerability |
| CVE-2021-1379 | 6.5 MEDIUM | Cisco IP Phones Cisco Discovery Protocol and Link Layer Discovery Protocol Remote Code Exe |
| CVE-2020-3539 | 6.3 MEDIUM | Cisco Data Center Network Manager Authorization Bypass Vulnerability |
| CVE-2021-1444 | 6.1 MEDIUM | Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) |
| CVE-2020-3431 | 6.1 MEDIUM | Cisco Small Business RV Series Routers Cross-Site Scripting Vulnerability |
| CVE-2020-26067 | 5.4 MEDIUM | Cisco Webex Teams Web Interface Cross-Site Scripting Vulnerability |
| CVE-2020-26063 | 5.4 MEDIUM | Cisco Integrated Management Controller Software Authorization Bypass Vulnerability |
| CVE-2020-3548 | 5.3 MEDIUM | Cisco Email Security Appliance Denial Of Service Vulnerability |
| CVE-2021-1424 | 5.3 MEDIUM | Cisco ASR 5000 Series Software (StarOS) ipsecmgr Process Denial of Service Vulnerability |
| CVE-2021-1132 | 5.3 MEDIUM | Cisco Network Services Orchestrator Path Traversal Vulnerability |
| CVE-2021-1234 | 5.3 MEDIUM | Cisco SD-WAN vManage Information Disclosure Vulnerabilities |
| CVE-2020-26062 | 5.3 MEDIUM | Cisco Integrated Management Controller Username Enumeration Vulnerability |
| CVE-2021-1461 | 4.9 MEDIUM | Cisco SD-WAN Software Signature Verification Bypass Vulnerability |
| CVE-2021-1410 | 4.3 MEDIUM | Cisco Webex Meetings Unauthorized Distribution List Update Vulnerability |
| CVE-2021-1425 | 4.3 MEDIUM | Cisco Cisco Email Security Appliance and Content Security Management Appliance Informatio |
Showing top 20 of 28 CVEs. View all on vendor page → →
No comments yet