Cisco AnyConnect VPN是美国思科(Cisco)公司的一种虚拟专用网络(VPN)客户端,它支持远程用户通过 SSL VPN 和 IPSec VPN 连接到企业网络。 Cisco AnyConnect VPN存在安全漏洞,该漏洞源于 VPN 身份验证过程中使用的处理程序的熵值较弱以及同一过程中存在的竞争条件。允许未经身份验证的远程攻击者对受影响设备上的 AnyConnect VPN 服务造成拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Meraki MX Firmware | N/A | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-20432 | 9.9 CRITICAL | Cisco Nexus Dashboard Fabric Controller Web UI Command Injection Vulnerability |
| CVE-2024-20393 | 8.8 HIGH | Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers Privilege Escalation V |
| CVE-2024-20449 | 8.8 HIGH | Cisco Nexus Dashboard Fabric Controller Remote Code Execution Vulnerability |
| CVE-2024-20501 | 8.6 HIGH | Cisco AnyConnect VPN 安全漏洞 |
| CVE-2024-20499 | 8.6 HIGH | Cisco Meraki Z Series Teleworker Gateway和Cisco Meraki MX 安全漏洞 |
| CVE-2024-20498 | 8.6 HIGH | Cisco Meraki Z Series Teleworker Gateway和Cisco Meraki MX 安全漏洞 |
| CVE-2024-20524 | 6.8 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service Vulnerabilities |
| CVE-2024-20523 | 6.8 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service Vulnerabilities |
| CVE-2024-20516 | 6.8 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service Vulnerabilities |
| CVE-2024-20517 | 6.8 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service Vulnerabilities |
| CVE-2024-20515 | 6.5 MEDIUM | Cisco Identity Services Engine Information Disclosure Vulnerability |
| CVE-2024-20365 | 6.5 MEDIUM | Cisco Integrated Management Controller Redfish Command Injection Vulnerability |
| CVE-2024-20519 | 6.5 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Remote Command Execution Vulnerabilit |
| CVE-2024-20522 | 6.5 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service Vulnerabilities |
| CVE-2024-20521 | 6.5 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Remote Command Execution Vulnerabilit |
| CVE-2024-20520 | 6.5 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Remote Command Execution Vulnerabilit |
| CVE-2024-20518 | 6.5 MEDIUM | Cisco Small Business RV042, RV042G, RV320, and RV325 Remote Command Execution Vulnerabilit |
| CVE-2024-20491 | 6.3 MEDIUM | Cisco Nexus Dashboard Insights Information Disclosure Vulnerability |
| CVE-2024-20490 | 6.3 MEDIUM | Cisco Nexus Dashboard Fabric Controller and Nexus Dashboard Orchestrator Information Discl |
| CVE-2024-20448 | 6.3 MEDIUM | Cisco Nexus Dashboard Fabric Controller Credential Information Disclosure Vulnerability |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet