Cisco PI and EPN ManagerÔ¶³Ì´úÂëÖ´Ðзì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-17

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-1821£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬£¬£¬£¬ £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-1822£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬£¬£¬£¬ £¬¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-1823£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬£¬£¬£¬ £¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


Cisco PI Software Releases < 3.4.1
Cisco PI Software Releases < 3.5
Cisco PI Software Releases < 3.6

EPN Manager Releases < 3.0.1


²»ÊÜÓ°ÏìµÄ°æ±¾


Cisco PI Software Releases == 3.4.1
Cisco PI Software Releases == 3.5
Cisco PI Software Releases == 3.6

EPN Manager Releases 3.0.1


·ì϶¸ÅÊö


CiscoPrimeInfrastructure£¨PI£©ºÍCiscoEvolvedProgrammableNetworkManager£¨EPNM£©¶¼ÊÇÃÀ¹ú˼¿Æ£¨Cisco£©¹«Ë¾µÄ²úÆ·¡£¡£¡£¡£¡£PIÊÇÒ»Ì×ͨ¹ýCiscoPrimeLANManagementSolution£¨LMS£©ºÍCiscoPrimeNetworkControlSystem£¨NCS£©¼¼Êõ½øÐÐÎÞÏßÖÎÀíµÄ½â¾ö¹æ»®£»£» £» £»£»£»£»£»EPNMÊÇÒ»Ì×ÍøÂçÖÎÀí½â¾ö¹æ»®¡£¡£¡£¡£¡£


5ÔÂ15ÈÕ£¬£¬£¬£¬ £¬Cisco¹Ù·½°ä²¼Ò»Ôò°²È«¹«¸æ£¬£¬£¬£¬ £¬³Æ½¨¸´ÁËCisco Prime Infrastructure and Evolved Programmable Network ManagerÖдæÔÚµÄ3¸ö¸ßΣ·ì϶£¨CVE-2019-1821¡¢CVE-2019-1822¡¢CVE-2019-1823£©¡£¡£¡£¡£¡£


ÕâЩ·ì϶ԴÓÚÈí¼þûÓкÏÀíµØ¶ÔÓû§ÊäÈë½øÐÐУÑéºÍ¹ýÂË£¬£¬£¬£¬ £¬¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖÎÀíÔ±½çÃæÉÏ´«¶ñÒâµÄÎļþÀ´´¥·¢£¬£¬£¬£¬ £¬ÀûÓóɹ¦»áʹµÃ¹¥»÷ÕßÔÚ±»¹¥»÷ϵͳÖÐÒÔrootȨÏÞÖ´ÐдúÂë¡£¡£¡£¡£¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬£¬£¬£¬ £¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190515-pi-rce¡£¡£¡£¡£¡£

²Î¿¼Á´½Ó


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190515-pi-rce