Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm4h-9vf3-j26j

Опубликовано: 25 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated attacker to view confidential device information.

This vulnerability is due to a device configuration upload being performed over an insecure tunnel. An attacker could exploit this vulnerability by conducting an on-path attack between the affected device and the Cisco Meraki Dashboard. A successful exploit could allow the attacker to view sensitive device configuration information.

A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated attacker to view confidential device information.

This vulnerability is due to a device configuration upload being performed over an insecure tunnel. An attacker could exploit this vulnerability by conducting an on-path attack between the affected device and the Cisco Meraki Dashboard. A successful exploit could allow the attacker to view sensitive device configuration information.

EPSS

Процентиль: 5%
0.00152
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 6.1
nvd
5 месяцев назад

A vulnerability in Cisco IOS XE Software for Cisco Meraki could allow a remote, unauthenticated attacker to view confidential device information. This vulnerability is due to a device configuration upload being performed over an insecure tunnel. An attacker could exploit this vulnerability by conducting an on-path attack between the affected device and the Cisco Meraki Dashboard. A successful exploit could allow the attacker to view sensitive device configuration information.

CVSS3: 6.1
fstec
5 месяцев назад

Уязвимость операционной системы Cisco IOS XE, позволяющая нарушителю получить доступ к конфиденциальной информации

EPSS

Процентиль: 5%
0.00152
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-319