Cisco BroadWorks是美国Cisco公司的一款提供呼叫控制与PBX功能的交换机。 Cisco BroadWorks存在输入验证错误漏洞,该漏洞源于XML条目解析不当,默认允许外部实体解析,可能导致未经身份验证的远程攻击者读取敏感配置信息,并以Cisco BroadWorks用户权限查看文件系统中的敏感文件。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cisco | Cisco BroadWorks | N/A |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco BroadWorks | N/A | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-20030 | 10.0 CRITICAL | Cisco Crosswork Security Hardening Release: August 2026 |
| CVE-2026-20358 | 10.0 CRITICAL | Cisco Crosswork Security Hardening Release: August 2026 |
| CVE-2026-20357 | 10.0 CRITICAL | Cisco Crosswork Security Hardening Release: August 2026 |
| CVE-2026-20317 | 10.0 CRITICAL | Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Authentic |
| CVE-2026-20315 | 10.0 CRITICAL | Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Access Co |
| CVE-2026-20231 | 9.9 CRITICAL | Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Neutraliz |
| CVE-2026-20359 | 9.9 CRITICAL | Cisco Crosswork Security Hardening Release: August 2026 |
| CVE-2026-20318 | 9.6 CRITICAL | Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Input Val |
| CVE-2026-20319 | 7.5 HIGH | Cisco Secure Workload Software Security Hardening Release August 2026 - Buffer Management |
| CVE-2026-20327 | 6.5 MEDIUM | Cisco Unified Intelligence Center SQL Injection Vulnerability |
| CVE-2026-20302 | 6.1 MEDIUM | Cisco RoomOS Stack Overflow Vulnerability |
| CVE-2026-20232 | 5.4 MEDIUM | Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability |
| CVE-2026-20177 | 5.3 MEDIUM | Cisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability |
| CVE-2026-20314 | 5.0 MEDIUM | Cisco Packaged Contact Center Enterprise & Cisco Unified Contact Center Enterprise Server- |
No comments yet