Cisco UCS Director and Cisco UCS...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

# Strike Three :: Symlinking Your Way to Unauthenticated Access Against Cisco UCS Director Apr 17, 2020 This is the final blog post to my series of attacks against Cisco software. If you haven’t seen the previous posts, I recommend you check them out [here](https://srcincite.io/blog/2019/05/17/panic-at-the-cisco-unauthenticated-rce-in-prime-infrastructure.html) and [here](https://srcincite.io/blog/2020/01/14/busting-ciscos-beans-hardcoding-your-way-to-hell.html). Like always, we will start from an unauthenticated context and work our way up to full blown remote code execution as root and I will share some of the interesting discoveries along the way :-) TL;DR *In this post, I will walk through some of the vulnerabilities I discovered in Cisco UCS Director and what makes them interesting and unique to other discoveries. If there is one thing you take away from this post, it’s that the tar command executed against an untrusted file is considered harmful.* ## Testing Environment In...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息