漏洞信息详情
多款Cisco产品路径遍历漏洞
漏洞简介
Cisco Aironet 1540 Series APs等都是美国思科(Cisco)公司的产品。Cisco Aironet 1540 Series APs是一款1540系列访问接入点产品。Cisco Aironet 1560 Series APs是一款1560系列访问接入点产品。Cisco Aironet 1800 Series APs是一款1800系列访问接入点产品。
多款Cisco产品中的CLI存在路径遍历漏洞,该漏洞源于网络系统或产品未能正确地过滤资源或文件路径中的特殊元素。攻击者可利用该漏洞访问受限目录之外的位置。以下产品受到影响:Cisco Aironet 1540 Series APs;Aironet 1560 Series APs;Aironet 1800 Series APs;Aironet 2800 Series APs;Aironet 3800 Series APs。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvk79392
参考网址
来源:www.cisco.com
链接:http://www.cisco.com/
来源:BID
链接:http://www.securityfocus.com/bid/108001
来源:tools.cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190417-air-ap-cmdinj
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-1835
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/79278
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.1329.2/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Cisco-Aironet-directory-traversal-via-CLI-Commands-29079
来源:www.securityfocus.com
链接:https://www.securityfocus.com/bid/108001
来源:tools.cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190417-air-ap-traversal
受影响实体
暂无
补丁
- 多款Cisco产品CLI 路径遍历漏洞的修复措施<!--2019-4-17-->
还没有评论,来说两句吧...