Cisco Identity Services Engine(ISE)是美国思科(Cisco)公司的一款基于身份的环境感知平台(ISE身份服务引擎)。该平台通过收集网络、用户和设备中的实时信息,制定并实施相应策略来监管网络。 Cisco Identity Services Engine 中存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Identity Services Engine Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-3544 | 8.8 HIGH | Cisco Video Surveillance 8000 Series IP Cameras Cisco Discovery Protocol Remote Code Execu |
| CVE-2020-3535 | 7.8 HIGH | Cisco Webex Teams Client for Windows DLL Hijacking Vulnerability |
| CVE-2020-3598 | 6.5 MEDIUM | Cisco Vision Dynamic Signage Director Missing Authentication Vulnerability |
| CVE-2020-3567 | 6.5 MEDIUM | Cisco Industrial Network Director Denial of Service Vulnerability |
| CVE-2020-3543 | 6.5 MEDIUM | Cisco Video Surveillance 8000 Series IP Cameras Cisco Discovery Protocol Memory Leak Vulne |
| CVE-2020-3602 | 6.3 MEDIUM | Cisco StarOS Privilege Escalation Vulnerability |
| CVE-2020-3596 | 5.9 MEDIUM | Cisco Expressway Series and TelePresence Video Communication Server Denial of Service Vuln |
| CVE-2020-3568 | 5.8 MEDIUM | Cisco Email Security Appliance URL Filtering Bypass Vulnerability |
| CVE-2020-3597 | 5.4 MEDIUM | Cisco Nexus Data Broker Software Path Traversal Vulnerability |
| CVE-2020-3601 | 4.4 MEDIUM | Cisco StarOS Privilege Escalation Vulnerability |
| CVE-2020-3536 | Cisco SD-WAN vManage Cross-Site Scripting Vulnerability | |
| CVE-2020-3467 | Cisco Identity Services Engine Authorization Bypass Vulnerability | |
| CVE-2020-3320 | Cisco Firepower Management Center Cross-Site Scripting Vulnerability |
No comments yet