Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-86m6-8m8r-f858

Опубликовано: 11 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text. This vulnerability is due to the unsecured logging of sensitive information on an affected system. An attacker with administrative privileges could exploit this vulnerability by accessing the audit logs through the CLI. A successful exploit could allow the attacker to retrieve sensitive information that includes user credentials.

A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text. This vulnerability is due to the unsecured logging of sensitive information on an affected system. An attacker with administrative privileges could exploit this vulnerability by accessing the audit logs through the CLI. A successful exploit could allow the attacker to retrieve sensitive information that includes user credentials.

EPSS

Процентиль: 18%
0.00058
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200
CWE-532

Связанные уязвимости

CVSS3: 4.4
nvd
почти 4 года назад

A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text. This vulnerability is due to the unsecured logging of sensitive information on an affected system. An attacker with administrative privileges could exploit this vulnerability by accessing the audit logs through the CLI. A successful exploit could allow the attacker to retrieve sensitive information that includes user credentials.

CVSS3: 5.5
fstec
около 4 лет назад

Уязвимость журнала аудита системы управления сетью Cisco Digital Network Architecture (DNA) Center, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 18%
0.00058
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200
CWE-532