Cisco PI and EPN ManagerÔ¶³Ì´úÂëÖ´Ðзì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-17

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-1821£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-1822£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-1823£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.8£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


Cisco PI Software Releases < 3.4.1
Cisco PI Software Releases < 3.5
Cisco PI Software Releases < 3.6

EPN Manager Releases < 3.0.1


²»ÊÜÓ°ÏìµÄ°æ±¾


Cisco PI Software Releases == 3.4.1
Cisco PI Software Releases == 3.5
Cisco PI Software Releases == 3.6

EPN Manager Releases 3.0.1


·ì϶¸ÅÊö


CiscoPrimeInfrastructure£¨PI£©ºÍCiscoEvolvedProgrammableNetworkManager£¨EPNM£©¶¼ÊÇÃÀ¹ú˼¿Æ£¨Cisco£©¹«Ë¾µÄ²úÆ·¡£PIÊÇÒ»Ì×ͨ¹ýCiscoPrimeLANManagementSolution£¨LMS£©ºÍCiscoPrimeNetworkControlSystem£¨NCS£©¼¼Êõ½øÐÐÎÞÏßÖÎÀíµÄ½â¾ö¹æ»®£»EPNMÊÇÒ»Ì×ÍøÂçÖÎÀí½â¾ö¹æ»®¡£


5ÔÂ15ÈÕ£¬Cisco¹Ù·½°ä²¼Ò»Ôò°²È«¹«¸æ£¬³Æ½¨¸´ÁËCisco Prime Infrastructure and Evolved Programmable Network ManagerÖдæÔÚµÄ3¸ö¸ßΣ·ì϶£¨CVE-2019-1821¡¢CVE-2019-1822¡¢CVE-2019-1823£©¡£


ÕâЩ·ì϶ԴÓÚÈí¼þûÓкÏÀíµØ¶ÔÓû§ÊäÈë½øÐÐУÑéºÍ¹ýÂË£¬¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖÎÀíÔ±½çÃæÉÏ´«¶ñÒâµÄÎļþÀ´´¥·¢£¬ÀûÓóɹ¦»áʹµÃ¹¥»÷ÕßÔÚ±»¹¥»÷ϵͳÖÐÒÔrootȨÏÞÖ´ÐдúÂë¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190515-pi-rce¡£

²Î¿¼Á´½Ó


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190515-pi-rce