Cisco Data Center Network Manager²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²îΣº¦Í¨¸æ

Ðû²¼Ê±¼ä 2020-01-06

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-15978£¬£¬£¬£¬ £¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬ £¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬£¬£¬£¬ £¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-15979£¬£¬£¬£¬ £¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬ £¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬£¬£¬£¬ £¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾


Îó²î¸ÅÊö


Cisco Data Center Network ManagerÊÇÃÀ¹ú˼¿Æ£¨Cisco£©¹«Ë¾µÄÒ»Ì×Êý¾ÝÖÐÐÄÖÎÀíϵͳ¡£¡£¡£¡£¡£¸ÃϵͳÊÊÓÃÓÚCisco NexusºÍMDSϵÁн»Á÷»ú£¬£¬£¬£¬ £¬£¬£¬£¬Ìṩ´æ´¢¿ÉÊÓ»¯¡¢ÉèÖú͹ÊÕÏɨ³ýµÈ¹¦Ð§¡£¡£¡£¡£¡£


CVE-2019-15978

Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾ÖеÄREST API±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓгä·ÖÑéÖ¤Ìá½»µ½¸ÃAPIµÄÓû§ÊäÈë¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖÆµÄÇëÇóʹÓøÃÎó²îÒÔÖÎÀíȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£


CVE-2019-15979

Cisco Data Center Network Manager 11.3(1)֮ǰ°æ±¾ÖеÄSOAP API±£´æ²Ù×÷ϵͳÏÂÁî×¢ÈëÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòûÓгä·ÖÑéÖ¤Ìá½»µ½¸ÃAPIµÄÓû§ÊäÈë¡£¡£¡£¡£¡£Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖÆµÄÇëÇóʹÓøÃÎó²îÒÔÖÎÀíȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬ £¬£¬£¬£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200102-dcnm-comm-inject¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200102-dcnm-comm-inject