Cisco Common Services Platform Collector(CSPC)是美国思科(Cisco)公司的一款通用服务平台数据收集器。该产品通过轮询思科设备的基本库存和配置数据分析网络性能,并识别风险和漏洞。 Cisco Common Services Platform Collector 2.9及其之前版本和2.10版本存在跨站脚本漏洞,该漏洞源于基于 Web 的管理界面对用户提供的数据的清理不足。远程攻击者可以诱骗受害者跟踪特制链接,并利用该漏洞在易受攻击的网站上下文中的用户浏览器中执
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Common Services Platform Collector Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-20674 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20673 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20671 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20670 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20669 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20668 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20667 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20666 | 6.1 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerabilities |
| CVE-2022-20797 | 5.5 MEDIUM | Cisco Secure Network Analytics Remote Code Execution Vulnerability |
| CVE-2022-20802 | 5.4 MEDIUM | Cisco Enterprise Chat and Email Stored Cross-Site Scripting Vulnerability |
| CVE-2022-20765 | 4.8 MEDIUM | Cisco UCS Director JavaScript Cross-Site Scripting Vulnerability |
| CVE-2022-20807 | 4.3 MEDIUM | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
| CVE-2022-20806 | 4.3 MEDIUM | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
No comments yet