Cisco IOS XE Wireless Controller software是美国思科(Cisco)公司的一个无线局域网控制器。提供一个管理网络功能 Cisco IOS XE Wireless Controller software 存在安全漏洞,该漏洞源于没有足够的限制,导致敏感配置详细信息无法访问披露。攻击者可以通过SNMP检索数据来利用此漏洞,可能允许经过身份验证的远程攻击者访问敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco IOS XE Software | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-20919 | 8.6 HIGH | Cisco IOS and IOS XE Software Common Industrial Protocol Request Denial of Service Vulnera |
| CVE-2022-20856 | 8.6 HIGH | Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family CAPWAP Mobility Den |
| CVE-2022-20848 | 8.6 HIGH | Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst 9100 Series Access Poi |
| CVE-2022-20847 | 8.6 HIGH | Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family DHCP Processing Den |
| CVE-2022-20855 | 7.9 HIGH | Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points Privileg |
| CVE-2022-20818 | 7.8 HIGH | Cisco SD-WAN Software Privilege Escalation Vulnerabilities |
| CVE-2022-20775 | 7.8 HIGH | Cisco SD-WAN Software Privilege Escalation Vulnerability |
| CVE-2022-20945 | 7.4 HIGH | Cisco Catalyst 9100 Series Access Points Association Request Denial of Service Vulnerabili |
| CVE-2022-20769 | 7.4 HIGH | Cisco Wireless LAN Controller AireOS Software FIPS Mode Denial of Service Vulnerability |
| CVE-2022-20930 | 6.7 MEDIUM | Cisco SD-WAN Software Arbitrary File Corruption Vulnerability |
| CVE-2022-20662 | 6.1 MEDIUM | Cisco Duo for macOS Authentication Bypass Vulnerability |
| CVE-2022-20851 | 5.5 MEDIUM | Cisco IOS XE Software Web UI Command Injection Vulnerability |
| CVE-2022-20850 | 5.5 MEDIUM | Cisco SD-WAN Arbitrary File Deletion Vulnerability |
| CVE-2022-20844 | 5.3 MEDIUM | Cisco Software-Defined Application Visibility and Control on Cisco vManage Static Username |
| CVE-2022-20728 | 4.7 MEDIUM | Cisco Access Points VLAN Bypass from Native VLAN Vulnerability |
No comments yet