Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gjqp-7xq4-7mr3

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to crash the CSADMIN module only (denial of service of administration function) or execute arbitrary code via format strings in the URL to port 2002.

Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to crash the CSADMIN module only (denial of service of administration function) or execute arbitrary code via format strings in the URL to port 2002.

EPSS

Процентиль: 85%
0.02343
Низкий

Дефекты

CWE-134

Связанные уязвимости

nvd
почти 24 года назад

Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to crash the CSADMIN module only (denial of service of administration function) or execute arbitrary code via format strings in the URL to port 2002.

EPSS

Процентиль: 85%
0.02343
Низкий

Дефекты

CWE-134