Cisco WebEx Meetings Server命令注入漏洞(CVE-2015-0589)
发表日期:2015-02-09 10:54:47
Cisco WebEx Meetings Server命令注入漏洞(CVE-2015-0589)
BugTraq-ID:72493
CVE-ID:CVE-2015-0589
发布日期:2015-02-04
更新日期:2015-02-05
受影响系统:
Cisco WebEx Meetings Server
详细信息:
Cisco WebEx Meetings是网络会议解决方案。
Cisco WebEx Meetings Server的管理Web接口存在安全漏洞,经过身份验证的远程攻击者可在受影响系统中执行任意代码。
来源:
Cisco
参考信息:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150204-wbx
解决办法:
厂商补丁:
Cisco
-----
Cisco已经为此发布了一个安全公告(cisco-sa-20150204-wbx)以及相应补丁:
cisco-sa-20150204-wbx:Cisco WebEx Meetings Server Command Injection Vulnerability
链接:http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150204-wbx