ZeroHour

CVE-2018-15425

CVSS 3.1
4.7 medium
EPSS
2%p74
Published
()
Modified
Description

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server.

Vendors
cisco
Products
identity services engine
Weakness
CWE-20, CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.