CNNVD-202509-260 Information

CNNVD ID

CNNVD-202509-260

CVE-2025-20287

  • CNNVD Published: 2025-09-03

Description (Chinese)

Cisco Evolved Programmable Network Manager是美国思科(Cisco)公司的一套网络管理解决方案。 Cisco Evolved Programmable Network Manager存在代码问题漏洞,该漏洞源于对上传文件验证不当,可能导致上传任意文件。

Description (English)

Cisco Evolved Programme Network Manager is a web-based management solution for Cisco. Cisco Evolved Programme Network Manager has a code gap, which stems from improper authentication of upload files and may lead to the uploading of arbitrary documents.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Citadel

Published

2025-09-03

Last Modified

2026-02-24

References

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epni-arb-file-upload-jjdM2P83

Patch

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epni-arb-file-upload-jjdM2P83

Share on: