← Ana sayfa

CVE-2022-20821

Cisco IOS XR Open Port Vulnerability

Severity: YüksekCVSS: -EPSS: -CISA KEVExploit Mevcut

Açıklama

Cisco IOS XR software health check opens TCP port 6379 by default on activation. An attacker can connect to the Redis instance on the open port and allow access to the Redis instance that is running within the NOSi container. Required action: Apply updates per vendor instructions.

Etkilenen Ürün

Vendor: Cisco · Product: IOS XR

Etkilenen sürümler: -

KOBALT VMS Çözüm Önerisi

Bu zafiyet müşteriye ait asset, agent, connector ve attack surface verileriyle eşleşiyorsa önceliklendirilmiş aksiyon planına alınmalıdır.