
Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Terminal (ONT) could allow an unauthenticated, remote attacker to perform the following actions: Log in with a default credential if the Telnet protocol is enabled Perform c CVE project by @Sn0wAlice
Cisco Catalyst 无源光网络 (PON) 系列交换机光网络终端 (ONT) 的基于 Web 的管理界面中存在多个漏洞,可能允许未经身份验证的远程攻击者执行以下操作:如果 Telnet 协议已启用,则使用默认凭据登录;执行命令注入;修改配置。有关这些漏洞的更多信息,请参阅本公告的详细信息部分。
| 身份验证 | 复杂度 | 向量 |
|---|---|---|
| 无 | 低 | 网络 |
| 机密性 | 完整性 | 可用性 |
|---|---|---|
| 部分 | 部分 | 部分 |
此仓库是项目 Live Hack CVE 的一部分。由 Sn0wAlice 为关心安全并需要获取最新 CVE 动态的人们创建。希望您喜欢,别忘了给仓库加星并在 Twitter 和 Github 上关注我。