Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-101446
HistoryNov 19, 2021 - 12:00 a.m.

Cisco Common Services Platform Collector SQL Injection Vulnerability

2021-11-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
cisco
cspc
snmp
sql injection
database
attacker
network
configuration
vulnerability

EPSS

0.001

Percentile

44.3%

Cisco Common Services Platform Collector (CSPC) is an SNMP-based tool that discovers and collects information from Cisco devices installed on the network. configuration of Cisco Common Services Platform Collector prior to version 2.9.1.1 The dashboard is vulnerable to SQL injection, which can be exploited by an attacker to read restricted information from the CSPC SQL database by uploading a file containing SQL queries to the configuration dashboard.

EPSS

0.001

Percentile

44.3%

Related for CNVD-2021-101446