A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server.
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1041792 | Third Party Advisory VDB Entry |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-ise-mult-vulns | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2018-10-03T00:00:00
Updated: 2018-10-07T09:57:02
Reserved: 2018-08-17T00:00:00
Link: CVE-2018-15424
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-10-05T14:29:11.077
Modified: 2020-09-16T13:22:45.870
Link: CVE-2018-15424
JSON object: View
Redhat Information
No data.