Cisco Identity Services Engine(ISE)是美国思科(Cisco)公司的一款环境感知平台(ISE身份服务引擎)。该平台通过收集网络、用户和设备中的实时信息,制定并实施相应策略来监管网络。 Cisco Identity Services Engine(ISE)存在安全漏洞,该漏洞源于对敏感数据的管理权限级别执行不当造成的。远程攻击者利用该漏洞能够从受影响的设备获取敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Identity Services Engine Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-20755 | 9.0 CRITICAL | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
| CVE-2022-20754 | 9.0 CRITICAL | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
| CVE-2022-20756 | 8.6 HIGH | Cisco Identity Services Engine RADIUS Service Denial of Service Vulnerability |
| CVE-2022-20762 | 7.8 HIGH | Cisco Ultra Cloud Core - Subscriber Microservices Infrastructure Privilege Escalation Vuln |
| CVE-2022-20774 | 6.8 MEDIUM | Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware Cross-Site Request |
| CVE-2022-20665 | 6.0 MEDIUM | Cisco StarOS Command Injection Vulnerability |
| CVE-2022-20784 | 5.8 MEDIUM | Cisco Web Security Appliance Filter Bypass Vulnerability |
| CVE-2022-20741 | 5.4 MEDIUM | Cisco Secure Network Analytics Network Diagrams Application Cross-Site Scripting Vulnerabi |
| CVE-2022-20763 | 5.4 MEDIUM | Cisco Webex Meetings Java Deserialization Vulnerability |
| CVE-2022-20781 | 5.4 MEDIUM | Cisco Web Security Appliance Stored Cross-Site Scripting Vulnerability |
| CVE-2022-20675 | 5.3 MEDIUM | Multiple Cisco Security Products Simple Network Management Protocol Service Denial of Serv |
No comments yet