ZeroHour

CVE-2023-20172

CVSS 3.1
4.9 medium
EPSS
<1%p33
Published
()
Modified
Description

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Vendors
cisco
Products
identity services engine
Weakness
CWE-602, CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.