CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-12623

MEDIUM
4.3
CVSS Severity Score
EPSS Score0.0920%
EPSS Percentile35.58th
Published2019年8月21日
Last Modified2024年11月21日

Vulnerability Description

A vulnerability in the web server functionality of Cisco Enterprise Network Functions Virtualization Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform file enumeration on an affected system. The vulnerability is due to the web server responding with different error codes for existing and non-existing files. An attacker could exploit this vulnerability by sending GET requests for different file names. A successful exploit could allow the attacker to enumerate files residing on the system.

Affected Platforms (CPE)

📦
Cisco

Enterprise Network Functions Virtualization Infrastructure

< 3.12.1

References & Advisories

相关漏洞威胁