ZeroHour

CVE-2018-15424

CVSS 3.1
4.7 medium
EPSS
1%p71
Published
()
Modified
Description

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server.

Vendors
cisco
Products
identity services engine
Weakness
CWE-20, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.