Cisco Secure Endpoint是美国Cisco公司的一套集成了静态和动态恶意软件分析以及威胁情报于一体的终端应用程序。 Cisco Secure Endpoint存在资源管理错误漏洞,该漏洞源于文件扫描过程中对临时资源处理不当,可能导致未经验证的远程攻击者通过提交特制的InstallShield文件,造成ClamAV扫描进程终止并暂时消耗系统资源,从而导致拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cisco | Cisco Secure Endpoint | 7.0.5 |
affected |
6.2.19 |
affected | ||
7.3.3 |
affected | ||
7.2.13 |
affected | ||
6.1.5 |
affected | ||
6.3.1 |
affected | ||
6.2.5 |
affected | ||
7.3.5 |
affected | ||
| … +138 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Secure Endpoint | 7.0.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-20191 | 7.5 HIGH | Cisco Catalyst Center Arbitrary File Read Vulnerability |
| CVE-2026-20214 | 7.5 HIGH | ClamAV FSG File Format Processing Out-of-Bounds Memory Corruption Vulnerability |
| CVE-2026-20213 | 7.5 HIGH | ClamAV PE File Format Processing Out-of-Bounds Memory Corruption Vulnerability |
| CVE-2026-20217 | 7.5 HIGH | ClamAV PESpin File Format Processing Out-of-Bounds Memory Corruption Vulnerability |
| CVE-2026-20215 | 7.5 HIGH | ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability |
| CVE-2026-20244 | 7.5 HIGH | ClamAV DMG File Processing Denial of Service Vulnerability |
| CVE-2026-20243 | 7.5 HIGH | ClamAV ALZ Archive Processing Denial of Service Vulnerability |
No comments yet