CVE-2018-15424

CVE-2018-15424: Multiple Vulnerabilities in Cisco Identity Services Engine

Vendor Cisco
Product Cisco Identity Services Engine Software
Weakness CWE-20 · Input validation
Published October 5, 2018
Last update November 26, 2024

CVSS base score

What the vulnerability does

01Description

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server.

Key dates

02Disclosure timeline

October 5, 2018 CVE published
November 26, 2024 Record updated