漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Cisco Nexus Dashboard Unauthorized REST API Vulnerability
Vulnerability Description
A vulnerability in the REST API endpoints of Cisco Nexus Dashboard and Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to view sensitive information or upload and modify files on an affected device. This vulnerability exists because of missing authorization controls on some REST API endpoints. An attacker could exploit th vulnerability by sending crafted API requests to an affected endpoint. A successful exploit could allow the attacker to perform limited Administrator functions, such as accessing sensitive information regarding HTTP Proxy and NTP configurations, uploading images, and damaging image files on an affected device.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Vulnerability Type
通过发送数据的信息暴露
Vulnerability Title
Cisco Nexus Dashboard和Cisco Nexus Dashboard Fabric Controller 安全漏洞
Vulnerability Description
Cisco Nexus Dashboard和Cisco Nexus Dashboard Fabric Controller都是美国思科(Cisco)公司的产品。Cisco Nexus Dashboard是一个单一控制台。能够简化数据中心网络的运营和管理。Cisco Nexus Dashboard Fabric Controller是一种用于管理 Cisco NX-OS 部署的综合网络管理平台,适用于数据中心的 LAN、SAN 和 IP Fabric for Media (IPFM) 网络 。 Cisco
CVSS Information
N/A
Vulnerability Type
N/A