Cisco Show and Share绕过安全限制漏洞


发布日期:2011-10-20
更新日期:2011-10-20

受影响系统:
Cisco Show and Share 5.2(2)
Cisco Show and Share 5.2(1)
Cisco Show and Share 5(2)
不受影响系统:
Cisco Show and Share 5.2(2.1)
描述:
--------------------------------------------------------------------------------
CVE ID: CVE-2011-2584

Cisco Show and Share是网络广播和视频共享应用,可创建安全视频通讯、优化全球视频合作、个性化人们之间的连接。

Cisco Show and Share没有正确验证某些管理员页面凭证,可被恶意用户利用访问 Encoders and Pull Configurations、Push Configurations、Video Encoding Formats和Transcoding页面,绕过某些安全限制。

<*来源:Cisco
 
  链接:http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20111019-sns
*>

建议:
--------------------------------------------------------------------------------
厂商补丁:

Cisco
-----
Cisco已经为此发布了一个安全公告(cisco-sa-20111019-sns)以及相应补丁:
cisco-sa-20111019-sns:Cisco Show and Share Security Vulnerabilities
链接:http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20111019-sns

相关内容