首页 / 操作系统 / Linux / Cisco WebEx Training Center Training Registration页面内容欺骗漏洞
发布日期:2013-12-13 更新日期:2013-12-17受影响系统: Cisco WebEx Training Center 描述: -------------------------------------------------------------------------------- BUGTRAQ ID: 64305 CVE(CAN) ID: CVE-2013-6969Cisco WebEx Training Center是在线培训解决方案。Cisco WebEx Training Center的training-registration页在实现上存在内容欺骗漏洞,未经身份验证的远程攻击者利用此漏洞可插入恶意内容到某些字段,导致内容欺骗。<*来源:Cisco
链接:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6969 *>建议: -------------------------------------------------------------------------------- 厂商补丁:Cisco ----- Cisco已经为此发布了一个安全公告(CVE-2013-6969)以及相应补丁: CVE-2013-6969:Cisco WebEx Training Center Training Registration Page Content Injection Vulnerability 链接:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6969Linux Kernel KVM "apic_get_tmcct()"函数拒绝服务漏洞IBM WebSphere Service Registry and Repository HTML注入漏洞( CVE-2013-6721)相关资讯 Cisco WebEx Training Center 本文评论 查看全部评论 (0)