Language:
http://www.nessus.org/u?7295287f
http://www.nessus.org/u?c3a5bc15
http://www.nessus.org/u?bc0e4dd2
http://www.nessus.org/u?c51ba034
Severity: Critical
ID: 132721
File Name: cisco-sa-20200102-dcnm.nasl
Version: 1.8
Type: combined
Family: CISCO
Published: 1/9/2020
Updated: 12/5/2022
Supported Sensors: Nessus
Risk Factor: Medium
Score: 6.7
Risk Factor: Critical
Base Score: 10
Temporal Score: 7.8
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2019-15976
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 8.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: cpe:/a:cisco:data_center_network_manager
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/25/2019
Vulnerability Publication Date: 1/2/2020
CVE: CVE-2019-15975, CVE-2019-15976, CVE-2019-15977, CVE-2019-15978, CVE-2019-15979, CVE-2019-15980, CVE-2019-15981, CVE-2019-15982, CVE-2019-15983, CVE-2019-15984, CVE-2019-15985, CVE-2019-15999
CWE: 22, 284, 611, 78, 798, 89
CISCO-SA: cisco-sa-20200102-dcnm-auth-bypass, cisco-sa-20200102-dcnm-comm-inject, cisco-sa-20200102-dcnm-path-trav, cisco-sa-20200102-dcnm-sql-inject, cisco-sa-20200102-dcnm-unauth-access, cisco-sa-20200102-dcnm-xml-ext-entity
IAVA: 2020-A-0009-S
CISCO-BUG-ID: CSCvq85945, CSCvq85957, CSCvq85972, CSCvq85998, CSCvq89422, CSCvq89834, CSCvq89841, CSCvq89859, CSCvq89878, CSCvq89895, CSCvq89898, CSCvq98723, CSCvq98730, CSCvq98736, CSCvq98748, CSCvr01692, CSCvr01694, CSCvr01701, CSCvr05463, CSCvr07317, CSCvr14598, CSCvr17970, CSCvr17974, CSCvr23573, CSCvr23728, CSCvr23733, CSCvr23770, CSCvr23864, CSCvr23865, CSCvr32014, CSCvr34624, CSCvr44798, CSCvr44896, CSCvr46507, CSCvr46508, CSCvr46544, CSCvr46547, CSCvr79116, CSCvr79127, CSCvr79188, CSCvr79240, CSCvr88730, CSCvr88737, CSCvs00139, CSCvs16306, CSCvs16318, CSCvs16341, CSCvs16350