Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w3pj-wh46-55mh

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain sensitive information via crafted packets, related to an "iFrame vulnerability," aka Bug ID CSCuh84801.

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain sensitive information via crafted packets, related to an "iFrame vulnerability," aka Bug ID CSCuh84801.

EPSS

Процентиль: 77%
0.01049
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 11 лет назад

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain sensitive information via crafted packets, related to an "iFrame vulnerability," aka Bug ID CSCuh84801.

EPSS

Процентиль: 77%
0.01049
Низкий

Дефекты

CWE-20