漏洞信息详情
多款Cisco产品授权问题漏洞
漏洞简介
Cisco Content Security Management Appliance(SMA)等都是美国思科(Cisco)公司的产品。Cisco Content Security Management Appliance是一套内容安全管理设备。Cisco Email Security Appliance(ESA)是一个电子邮件安全设备。Cisco Web Security Appliance(WSA)是一款Web安全设备。
多款 Cisco 产品存在授权问题漏洞,该漏洞允许未经过身份验证的远程攻击者访问通用系统信息和某些配置信息从一个受影响的设备,以下产品及型号收到影响:Cisco Content Security Management Appliance,Cisco Email Security Appliance,Cisco Web Security Appliance。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-wsa-sma-info-RHp44vAC
参考网址
来源:CISCO
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-wsa-sma-info-RHp44vAC
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Cisco-ESA-SMA-WSA-information-disclosure-via-General-Purpose-API-34391
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2021-1129
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0249/
来源:tools.cisco.com
链接:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-wsa-sma-info-RHp44vAC
受影响实体
暂无
补丁
暂无
还没有评论,来说两句吧...