¶à¿îCisco²úÆ·í§ÒâÏÂÁîÖ´ÐÐÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-11-11

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-15271£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.8£¬£¬£¬£¬£¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Cisco RV016 Multi-WAN VPN Router <4.2.3.10

Cisco RV042 Dual WAN VPN Router <4.2.3.10

Cisco RV042G Dual Gigabit WAN VPN Router <4.2.3.10

Cisco RV082 Dual WAN VPN Router <4.2.3.10


Îó²î¸ÅÊö


Cisco RV016 Multi-WAN VPN RouterµÈ¶¼ÊÇÃÀ¹ú˼¿Æ£¨Cisco£©¹«Ë¾µÄÒ»¿îVPN£¨ÐéÄâרÓÃÍøÂ磩·ÓÉÆ÷¡£¡£¡£¡£¡£¡£


¶à¿îCisco²úÆ·ÖеÄWebÖÎÀí½çÃæ±£´æí§ÒâÏÂÁîÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ³ÌÐòδÄܶÔHTTP payload¾ÙÐÐÊäÈëÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬Ô¶³Ì¹¥»÷Õß¿Éͨ¹ý·¢ËͶñÒâµÄHTTPÇëÇóʹÓøÃÎó²îÒÔrootȨÏÞÖ´ÐÐí§ÒâÏÂÁî¡£¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼ÁËÎó²îÐÞ¸´³ÌÐò£¬£¬£¬£¬£¬£¬£¬£¬Çëʵʱ¹Ø×¢¸üУº


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191106-sbrv-cmd-x¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191106-sbrv-cmd-x