¡¾Îó²îͨ¸æ¡¿Cisco Enterprise NFVISÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î (CVE-2021-34746)

Ðû²¼Ê±¼ä 2021-09-02

0x00 Îó²î¸ÅÊö

CVE     ID

CVE-2021-34746

ʱ      ¼ä

2021-09-01

Àà      ÐÍ

Éí·ÝÑéÖ¤ÈÆ¹ý

µÈ      ¼¶

ÑÏÖØ

Ô¶³ÌʹÓÃ

ÊÇ

Ó°Ïì¹æÄ£


¹¥»÷ÖØÆ¯ºó

µÍ

¿ÉÓÃÐÔ

¸ß

Óû§½»»¥

ÎÞ

ËùÐèȨÏÞ

ÎÞ

PoC/EXP

ÒѹûÕæ

ÔÚҰʹÓÃ

·ñ

 

0x01 Îó²îÏêÇé

image.png

 

2021Äê9ÔÂ1ÈÕ£¬£¬£¬CiscoÐû²¼Ç徲ͨ¸æ£¬£¬£¬ÐÞ¸´ÁËÆäÆóÒµ NFV »ù´¡ÉèÊ©Èí¼þ (NFVIS) µÄ TACACS+ÈÏÖ¤¡¢ÊÚȨºÍ¼Æ·Ñ (AAA) ¹¦Ð§ÖеÄÒ»¸öÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î£¨CVE-2021-34746£©£¬£¬£¬¸ÃÎó²îµÄCVSSv3ÆÀ·ÖΪ9.8¡£ ¡£¡£¡£¡£¡£¡£

ÓÉÓÚ¶Ôת´ï¸øÈÏÖ¤¾ç±¾µÄÓû§ÊäÈëµÄÑéÖ¤²»ÍêÕû£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔͨ¹ýÔÚÈÏÖ¤ÇëÇóÖÐ×¢Èë²ÎÊýÀ´Ê¹ÓôËÎó²î¡£ ¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÈÆ¹ýÈÏÖ¤£¬£¬£¬²¢ÒÔÖÎÀíÔ±Éí·ÝµÇ¼ÊÜÓ°ÏìµÄ×°±¸¡£ ¡£¡£¡£¡£¡£¡£

˼¿Æ²úÆ·Çå¾²ÊÂÎñÏìÓ¦ÍŶÓÌåÏÖ£¬£¬£¬ÒÑÓÐÊÊÓÃÓÚ´ËÎó²îµÄPoC/EXP£¬£¬£¬ÏÖÔÚÔÝδ·¢Ã÷¶ñÒâʹÓᣠ¡£¡£¡£¡£¡£¡£

 

Ó°Ïì¹æÄ£

ÈôÊÇÉèÖÃÁËTACACSÍⲿÈÏÖ¤ÒªÁ죬£¬£¬´ËÎó²î»áÓ°ÏìCisco Enterprise NFVIS °æ±¾4.5.1¡£ ¡£¡£¡£¡£¡£¡£

×¢£º½öʹÓÃRADIUS»òÍâµØÈÏÖ¤µÄÉèÖò»ÊÜÓ°Ïì¡£ ¡£¡£¡£¡£¡£¡£

 

0x02 ´¦Öóͷ£½¨Òé

ÏÖÔÚCiscoÒѾ­ÐÞ¸´ÁË´ËÎó²î£¬£¬£¬½¨ÒéÊÜÓ°ÏìÓû§ÊµÊ±Éý¼¶¸üе½Cisco Enterprise NFVIS °æ±¾ 4.6.1 »ò¸ü¸ß°æ±¾¡£ ¡£¡£¡£¡£¡£¡£

ÏÂÔØÁ´½Ó£º

https://software.cisco.com/download/home

 

È·¶¨ÊÇ·ñÆôÓÃTACACSÍⲿÈÏÖ¤

1.Ҫȷ¶¨×°±¸ÉÏÊÇ·ñÆôÓÃÁË TACACS ÍⲿÈÏÖ¤¹¦Ð§£¬£¬£¬ÇëʹÓà show running-config tacacs-server ÏÂÁî¡£ ¡£¡£¡£¡£¡£¡£ÒÔÏÂʾÀýÏÔʾÁ˵±TACACSÍⲿÈÏÖ¤±»ÆôÓÃʱ£¬£¬£¬Cisco Enterprise NFVISÉÏshow running-config tacacs-serverÏÂÁîµÄÊä³ö£º

nfvis# show running-config tacacs-server

tacacs-server host 192.168.1.1

 key           0

 shared-secret "example!23"

 admin-priv    15

 oper-priv     1

!

nfvis#

 

ÈôÊÇshow running-config tacacs-server ÏÂÁîµÄÊä³öΪNo entries found£¬£¬£¬ÔòδÆôÓà TACACS ÍⲿÈÏÖ¤¹¦Ð§¡£ ¡£¡£¡£¡£¡£¡£

2.ͨ¹ýGUI¼ì²éÉèÖᣠ¡£¡£¡£¡£¡£¡£Ñ¡ÔñÉèÖà > Ö÷»ú > Çå¾² > Óû§ºÍ½ÇÉ«¡£ ¡£¡£¡£¡£¡£¡£ÈôÊÇÔÚÍⲿÈÏ֤Ͻç˵ÁËTACACS+Ö÷»ú£¬£¬£¬ÄÇô¸Ã×°±¸ÈÝÒ×Êܵ½´ËÎó²îµÄÓ°Ïì¡£ ¡£¡£¡£¡£¡£¡£

 

0x03 ²Î¿¼Á´½Ó

https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nfvis-g2DMVVh

https://www.cisco.com/

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-34746

 

0x04 ¸üа汾

°æ±¾

ÈÕÆÚ

ÐÞ¸ÄÄÚÈÝ

V1.0

2021-09-02

Ê×´ÎÐû²¼

 

0x05 Îĵµ¸½Â¼

CNVD£ºwww.cnvd.org.cn

CNNVD£ºwww.cnnvd.org.cn

CVE£ºcve.mitre.org

CVSS£ºwww.first.org

NVD£ºnvd.nist.gov

 

0x06 ¹ØÓÚ¼øºÚµ£±£Íø

¹Ø×¢ÒÔϹ«Öںţ¬£¬£¬»ñÈ¡¸ü¶à×ÊѶ£º

image.png