Cisco Adaptive Security Device Manager是美国思科(Cisco)公司的一款安全设备管理器。 Cisco Adaptive Security Device Manager (ASDM) Launcher存在代码注入漏洞,该漏洞源于对 ASDM 和 Launcher 之间交换的特定代码缺乏适当的签名验证。未经身份验证的远程攻击者可利用该漏洞在用户的操作系统上执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Adaptive Security Appliance (ASA) Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Proof of Concept for CVE-2021-1585: Cisco ASA Device Manager RCE | https://github.com/jbaines-r7/staystaystay | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-1576 | 8.8 HIGH | Cisco Business Process Automation Privilege Escalation Vulnerabilities |
| CVE-2021-1574 | 8.8 HIGH | Cisco Business Process Automation Privilege Escalation Vulnerabilities |
| CVE-2021-1598 | 6.5 MEDIUM | Cisco Video Surveillance 7000 Series IP Cameras Link Layer Discovery Protocol Memory Leak |
| CVE-2021-1597 | 6.5 MEDIUM | Cisco Video Surveillance 7000 Series IP Cameras Link Layer Discovery Protocol Memory Leak |
| CVE-2021-1596 | 6.5 MEDIUM | Cisco Video Surveillance 7000 Series IP Cameras Link Layer Discovery Protocol Memory Leak |
| CVE-2021-1595 | 6.5 MEDIUM | Cisco Video Surveillance 7000 Series IP Cameras Link Layer Discovery Protocol Memory Leak |
| CVE-2021-1359 | 6.3 MEDIUM | Cisco Web Security Appliance Privilege Escalation Vulnerability |
| CVE-2021-1575 | 6.1 MEDIUM | Cisco Virtualized Voice Browser Cross-Site Scripting Vulnerability |
| CVE-2021-1607 | 4.8 MEDIUM | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities |
| CVE-2021-1606 | 4.8 MEDIUM | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities |
| CVE-2021-1605 | 4.8 MEDIUM | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities |
| CVE-2021-1604 | 4.8 MEDIUM | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities |
| CVE-2021-1603 | 4.8 MEDIUM | Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities |
| CVE-2021-1562 | 4.3 MEDIUM | Cisco BroadWorks Application Server Information Disclosure Vulnerability |
No comments yet