Cisco IOS XE SD-WAN Software是美国思科(Cisco)公司的一款应用于Cisco IOS XE 网络操作系统的用于网络管理(软件定义网络)的软件。 Cisco IOS XE SD-WAN CLI 存在操作系统命令注入漏洞,该漏洞源于系统CLI的输入验证不足。攻击者可以通过对受影响的设备进行身份验证并将精心设计的输入提交到系统CLI来利用此漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco IOS XE SD-WAN Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-40121 | 6.1 MEDIUM | Cisco Identity Services Engine Cross-Site Scripting Vulnerabilities |
| CVE-2021-34738 | 6.1 MEDIUM | Cisco Identity Services Engine Cross-Site Scripting Vulnerabilities |
| CVE-2021-40122 | 5.9 MEDIUM | Cisco Meeting Server Call Bridge Denial of Service Vulnerability |
| CVE-2021-34736 | 5.3 MEDIUM | Cisco Integrated Management Controller GUI Denial of Service Vulnerability |
| CVE-2021-34789 | 4.8 MEDIUM | Cisco Tetration Stored Cross-Site Scripting Vulnerability |
| CVE-2021-40123 | 4.3 MEDIUM | Cisco Identity Services Engine File Download Vulnerability |
| CVE-2021-34743 | 4.3 MEDIUM | Cisco Webex Software Application Authorization Bypass Vulnerability |
| CVE-2021-34760 | Cisco TelePresence Management Suite Stored Cross-Site Scripting Vulnerability |
No comments yet