|漏洞详情
Cisco SD-WAN Solution是美国思科(Cisco)公司的一套网络扩展解决方案。 Cisco SD-WAN Solution Release 19.2.2之前版本中存在权限许可和访问控制问题漏洞,该漏洞源于程序没有充分进行输入验证。本地攻击者可通过发送特制的请求利用该漏洞获取root权限。以下产品及版本受到影响:Cisco vBond Orchestrator Software;vEdge 100 Series Routers;vEdge 1000 Series Routers;vEdge 2000 Series Routers;vEdge 5000 Series Routers;vEdge Cloud Router Platform;vManage Network Management System;vSmart Controller Software。
|参考资料
来源:tools.
cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwpresc-ySJGvE9
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0968/
评论(0)