Cisco Crosswork Network Controller是美国思科(Cisco)公司的一个网络控制器。 Cisco Crosswork Network Controller存在跨站脚本漏洞,该漏洞源于 Web 管理界面没有正确验证用户提供的输入。攻击者利用该漏洞在受影响的界面中执行任意脚本代码或访问敏感的基于浏览器的信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Crosswork Network Change Automation | 3.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-20166 | 5.4 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability |
| CVE-2025-20167 | 5.4 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability |
| CVE-2025-20168 | 5.4 MEDIUM | Cisco Common Services Platform Collector Cross-Site Scripting Vulnerability |
| CVE-2025-20126 | 4.8 MEDIUM | Cisco ThousandEyes Endpoint Agent Certificate Validation Vulnerability |
No comments yet