9
CVSSv2

CVE-2013-5530

Published: 25/10/2013 Updated: 21/09/2016
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The web framework in Cisco Identity Services Engine (ISE) 1.0 and 1.1.0 prior to 1.1.0.665-5, 1.1.1 prior to 1.1.1.268-7, 1.1.2 prior to 1.1.2.145-10, 1.1.3 prior to 1.1.3.124-7, 1.1.4 prior to 1.1.4.218-7, and 1.2 prior to 1.2.0.899-2 allows remote authenticated users to execute arbitrary commands via a crafted session on TCP port 443, aka Bug ID CSCuh81511.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco identity services engine software 1.1.3

cisco identity services engine software 1.2

cisco identity services engine software 1.1

cisco identity services engine software 1.1.1

cisco identity services engine software 1.1.2

cisco identity services engine software 1.1.4

cisco identity services engine software 1.0

Vendor Advisories

Cisco Identity Services Engine (ISE) contains the following vulnerabilities: Cisco ISE Authenticated Arbitrary Command Execution Vulnerability Cisco ISE Support Information Download Authentication Bypass Vulnerability These vulnerabilities are independent of each other; a release that is affected by one of the vulnerabilities may not be ...