Cisco Data Center Network Manager²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²îΣº¦Í¨¸æ
Ðû²¼Ê±¼ä 2020-01-06Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-15978£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬£¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-15979£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬£¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾
Îó²î¸ÅÊö
Cisco Data Center Network ManagerÊÇÃÀ¹ú˼¿Æ£¨Cisco£©¹«Ë¾µÄÒ»Ì×Êý¾ÝÖÐÐÄÖÎÀíϵͳ¡£¡£¡£¸ÃϵͳÊÊÓÃÓÚCisco NexusºÍMDSϵÁн»Á÷»ú£¬£¬£¬£¬£¬Ìṩ´æ´¢¿ÉÊÓ»¯¡¢ÉèÖú͹ÊÕÏɨ³ýµÈ¹¦Ð§¡£¡£¡£
CVE-2019-15978
Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾ÖеÄREST API±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓгä·ÖÑéÖ¤Ìá½»µ½¸ÃAPIµÄÓû§ÊäÈë¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖÆµÄÇëÇóʹÓøÃÎó²îÒÔÖÎÀíȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£
CVE-2019-15979
Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾ÖеÄSOAP API±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓгä·ÖÑéÖ¤Ìá½»µ½¸ÃAPIµÄÓû§ÊäÈë¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖÆµÄÇëÇóʹÓøÃÎó²îÒÔÖÎÀíȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£
Îó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£¡£¡£
ÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200102-dcnm-comm-inject¡£¡£¡£
²Î¿¼Á´½Ó
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200102-dcnm-comm-inject