← volver
CVE-2023-20161

Cisco Small Business Series Switches Buffer Overflow Vulnerabilities

CVSS 8.6 HIGHEPSS 10.3%CWE-120
Vexday Risk Score
26Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.6EPSS 10.3%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
18 may 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privileges on an affected device. These vulnerabilities are due to improper validation of requests that are sent to the web interface. For more information about these vulnerabilities, see the Details section of this advisory.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →