Multiple Vulnerabilities in Cisco Secure Access Control Server

Related Vulnerabilities: CVE-2004-1458   CVE-2004-1459   CVE-2004-1460   CVE-2004-1461  

Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) provide authentication, authorization, and accounting (AAA) services to network devices such as a network access server, Cisco PIX and a router. This advisory documents multiple Denial of Service (DoS) and authentication related vulnerabilities for the ACS Windows and the ACS Solution Engine servers. The vulnerabilities are documented as these Cisco bug IDs: CSCeb60017 ( registered customers only) CSCec66913 ( registered customers only) CSCec90317 ( registered customers only) CSCed81716 ( registered customers only) CSCef05950 ( registered customers only) This advisory will be posted at http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20040825-acs.