目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

CVE-2019-15264— Cisco Aironet and Catalyst 9100 Access Points 资源管理错误漏洞

EPSS 0.32% · P55
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2019-15264の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
Cisco Aironet Access Points and Catalyst 9100 Access Points CAPWAP Denial of Service Vulnerability
ソース: NVD (National Vulnerability Database)
脆弱性説明
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation of Cisco Aironet and Catalyst 9100 Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an affected device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to improper resource management during CAPWAP message processing. An attacker could exploit this vulnerability by sending a high volume of legitimate wireless management frames within a short time to an affected device. A successful exploit could allow the attacker to cause a device to restart unexpectedly, resulting in a DoS condition for clients associated with the AP.
ソース: NVD (National Vulnerability Database)
CVSS情報
N/A
ソース: NVD (National Vulnerability Database)
脆弱性タイプ
未加控制的资源消耗(资源穷尽)
ソース: NVD (National Vulnerability Database)
脆弱性タイトル
Cisco Aironet and Catalyst 9100 Access Points 资源管理错误漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Cisco Aironet and Catalyst 9100 Access Points (APs) 中的Control and Provisioning of Wireless Access Points (CAPWAP)协议实现存在资源管理错误漏洞,该漏洞源于程序没有进行正确的资源管理。攻击者可通过在短时间内发送大量的合法无线管理帧利用该漏洞造成拒绝服务。以下产品及版本受到影响:Cisco Aironet 1540;Series Aps;Aironet 1560 Series Aps;Aironet
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
CiscoCisco Aironet Access Point Software unspecified ~ n/a -

II. CVE-2019-15264の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2019-15264のインテリジェンス情報

登录查看更多情报信息。

Same Patch Batch · Cisco · 2019-10-16 · 41 CVEs total

CVE-2019-15241Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15251Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15247Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15248Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15246Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15244Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15245Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15242Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15243Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15240Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-15250Cisco SPA100 Series Analog Telephone Adapters Remote Code Execution Vulnerabilities
CVE-2019-12705Cisco Expressway Series and TelePresence Video Communication Server Cross-Site Scripting V
CVE-2019-12708Cisco SPA100 Series Analog Telephone Adapters Administrative Credentials Information Discl
CVE-2019-12718Cisco Small Business Smart and Managed Switches Cross-Site Scripting Vulnerability
CVE-2019-12703Cisco SPA122 ATA with Router Devices DHCP Services Cross-Site Scripting Vulnerability
CVE-2019-12704Cisco SPA100 Series Analog Telephone Adapters Web-Based Management Interface File Disclosu
CVE-2019-12638Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability
CVE-2019-12702Cisco SPA100 Series Analog Telephone Adapters Reflected Cross-Site Scripting Vulnerability
CVE-2019-12636Cisco Small Business Smart and Managed Switches Cross-Site Request Forgery Vulnerability
CVE-2019-12637Cisco Identity Services Engine Multiple Stored Cross-Site Scripting Vulnerabilities

Showing 20 of 41 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2019-15264へのコメント

まだコメントはありません


コメントを残す