cisco-sa-nso-ordir-MNM8YqzO: Cisco Crosswork Network Services Orchestrator Open Redirect Vulnerability
Published May 15, 2024
·Updated
A vulnerability in the web-based management interface of Cisco Crosswork Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page.This vulnerability is due to improper input validation of a parameter in
Affected Software
1 affected component
cisco Crosswork Network Services Orchestrator
Event History
May 15, 2024
Advisory Published
via Cisco·04:00 PM
Data Sourced
via Cisco·04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of cisco-sa-nso-ordir-MNM8YqzO?
The severity of cisco-sa-nso-ordir-MNM8YqzO is classified as high.
2
How do I fix cisco-sa-nso-ordir-MNM8YqzO?
To fix cisco-sa-nso-ordir-MNM8YqzO, update to the latest version of Cisco Crosswork Network Services Orchestrator.
3
What impact does cisco-sa-nso-ordir-MNM8YqzO have on my system?
cisco-sa-nso-ordir-MNM8YqzO can allow an unauthenticated remote attacker to redirect users to a malicious web page.
4
Which products are affected by cisco-sa-nso-ordir-MNM8YqzO?
cisco-sa-nso-ordir-MNM8YqzO affects Cisco Crosswork Network Services Orchestrator.
5
Is authentication required to exploit cisco-sa-nso-ordir-MNM8YqzO?
No, cisco-sa-nso-ordir-MNM8YqzO can be exploited by an unauthenticated remote attacker.