Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-4332

EPSS 11.05% · P94
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-4332

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service or upload files via direct requests to obsolete JSP files including (1) admin/uploadclient.jsp, (2) apply_firmware_action.jsp, and (3) file.jsp.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco Clean Access多个JSP页面访问验证漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco Clean Access(CCA)是可以自动检测、隔离和清除试图访问网络的感染或有漏洞设备的软件解决方案。 Cisco Clean Access(CCA)的访问认证存在漏洞,远程攻击者可能非授权访问服务器。CCA对/admin/uploadclient.jsp缺少认证检查,这样任何浏览页面的用户都可以直接向/installer/windows文件夹上传文件,导致拒绝服务或其他非授权访问。apply_firmware_action.jsp和file.jsp中也存在类似的问题。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-4332

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-4332

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-12-17 · 44 CVEs total

CVE-2005-4334ZixForum Forum.ASP多个SQL注入漏洞
CVE-2003-1289NetBSD和FreeBSD statfs iBCS2内存复制漏洞
CVE-2005-4336CourseForum Technologies ProjectForum多个跨站脚本漏洞
CVE-2005-4337Academic Suite绕过认证并获取权限漏洞
CVE-2005-4341Academic Suite Blackboard Learning和Community Portal System 信息泄露漏洞
CVE-2005-4342Macromedia Cold Fusion MX多个漏洞
CVE-2005-4343Macromedia Cold Fusion MX多个漏洞
CVE-2005-4344Macromedia Cold Fusion MX多个漏洞
CVE-2005-4345Macromedia Cold Fusion MX多个漏洞
CVE-2005-4339Academic Suite Blackboard Learning和Community Portal System跨站脚本攻击漏洞
CVE-2005-4335ProjectForum拒绝服务攻击漏洞
CVE-2005-4333Binary Board System多个跨站脚本漏洞
CVE-2005-4331IHTML Merchant SQL注入漏洞
CVE-2005-4330IHTML Merchant Mall SQL注入漏洞
CVE-2005-4329PHP Arena PAFileDB Extreme Edition SQL注入漏洞
CVE-2005-4328WebGlimpse跨站脚本漏洞
CVE-2005-4327WebCal多个HTML注入和跨站脚本漏洞
CVE-2005-4326American Power Conversion (APC) 远程攻击漏洞
CVE-2005-4325Driverse 不明漏洞
CVE-2005-4324Hitachi Groupmax Mail不明缺陷电子邮件消息拒绝服务漏洞

Showing top 20 of 44 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-4332

No comments yet


Leave a comment