5.8
CVSSv2

CVE-2014-8029

Published: 09/01/2015 Updated: 08/09/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Open redirect vulnerability in the web interface in Cisco Secure Access Control System (ACS) allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter, aka Bug ID CSCuq74150.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco secure access control system -

Vendor Advisories

A vulnerability in the web interface of Cisco Secure Access Control Server (ACS) could allow an unauthenticated, remote attacker to conduct a web page open redirection attack against a user's browser The vulnerability is due to insufficient input validation of a specific parameter An attacker could exploit this vulnerability by persuading a user ...