思科產品多個漏洞
風險: 中度風險
類型: 操作系統 - Network
於思科產品發現多個漏洞,遠端攻擊者可利用這些漏洞,於目標系統觸發提升權限、遠端執行任意程式碼、洩露敏感資料及跨網站指令碼。
影響
- 跨網站指令碼
- 權限提升
- 遠端執行程式碼
- 資料洩露
受影響之系統或技術
Cisco ESA
- Cisco SMA
- Cisco WSA
- Cisco Umbrella
- Cisco AsyncOS for the Secure Web Appliance
詳情請參閱以下連結﹕
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-xss-RuB5WGqL
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umb-dos-dgKzDEBP
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-prv-esc-nPzWZrQj
解決方案
在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。
- 安裝供應商提供的修補程式:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-xss-RuB5WGqL
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umb-dos-dgKzDEBP
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-prv-esc-nPzWZrQj
漏洞識別碼
資料來源
相關連結
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-wsa-sma-info-RHp44vAC
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-xss-RuB5WGqL
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umb-dos-dgKzDEBP
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-prv-esc-nPzWZrQj
- http://www.auscert.org.au/bulletins/ESB-2021.0249/
- http://www.auscert.org.au/bulletins/ESB-2021.0250/
- http://www.auscert.org.au/bulletins/ESB-2021.0251/
- http://www.auscert.org.au/bulletins/ESB-2020.4102.2/
分享至