漏洞描述 Cisco Nexus 3500 Series Switches是美国思科(Cisco)公司的一款3500系列交换机。 Cisco Nexus 3500 Series Switches存在权限许可和访问控制问题漏洞,该漏洞源于设备重启时ACL拒绝规则未得到正确执行。未经身份验证的远程攻击者将应被阻止的流量发送到受影响设备的管理接口。
相关漏洞推荐 ZYCOO CooVox Series IP Phone System /login 默认口令漏洞 Fujitsu IP Series 权限绕过漏洞(CVE-2023-38433) Cisco Secure Firewall Management Center和Cisco Secure Firewall Threat Defense 操作系统命令注入漏洞 POC CVE-2001-0537: Cisco IOS HTTP Configuration - Authentication Bypass POC CVE-2009-1558: Cisco Linksys WVC54GCA 1.00R22/1.00R24 - Local File Inclusion POC CVE-2009-4679: Joomla! Portfolio Nexus - Remote File Inclusion POC CVE-2011-3315: Cisco CUCM, UCCX, and Unified IP-IVR- Directory Traversal POC CVE-2013-5528: Cisco Unified Communications Manager 7/8/9 - Directory Traversal POC CVE-2018-0127: Cisco RV132W/RV134W Router - Information Disclosure POC CVE-2018-0296: Cisco ASA - Local File Inclusion POC CVE-2018-12675: SV3C HD Camera L Series - Open Redirect POC CVE-2019-1653: Cisco Small Business WAN VPN Routers - Sensitive Information Disclosure POC CVE-2019-1821: Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager - Remote Code Execution