CVE-2004-1099
published 2005-01-10CVE-2004-1099: Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) 3.3.1, when the…
PriorityP349critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
10.20%
95.1th percentile
Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) 3.3.1, when the EAP-TLS protocol is enabled, does not properly handle expired or untrusted certificates, which allows remote attackers to bypass authentication and gain unauthorized access via a "cryptographically correct" certificate with valid fields such as the username.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | secure | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jx47-vcqg-x34g: Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) 3
ghsa_unreviewed·2022-04-29
CVE-2004-1099 [HIGH] GHSA-jx47-vcqg-x34g: Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) 3
Cisco Secure Access Control Server for Windows (ACS Windows) and Cisco Secure Access Control Server Solution Engine (ACS Solution Engine) 3.3.1, when the EAP-TLS protocol is enabled, does not properly handle expired or untrusted certificates, which allows remote attackers to bypass authentication and gain unauthorized access via a "cryptographically correct" certificate with valid fields such as the username.
Cisco
Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
vendor_cisco·2004-11-02
CVE-2004-1099 Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
A Cisco Secure Access Control Server (ACS) that is configured to use
Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) to
authenticate users to the network will allow access to any user that uses a
cryptographically correct certificate as long as the user name is valid.
Cryptographically correct means that the certificate is in
the appropriate format and contains valid fields. The certificate can be
expired, or come from an untrusted Certificate Authority (CA) and still be
cryptographically correct.
Only version 3.3.1 of the Cisco Secure ACS for Windows and Cisco
Secure ACS Solution Engine is affected by this vulnerability. Cisco has made
free software available to address this problem.
This v
Cisco
Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
vendor_cisco
CVE-2004-1099 Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
CVE-2004-1099: Vulnerability in Cisco Secure Access Control Server EAP-TLS Authentication
A Cisco Secure Access Control Server (ACS) that is configured to use Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) to authenticate users to the network will allow access to any user that uses a cryptographically correct certificate as long as the user name is valid. Cryptographically correct means that the certificate is in the appropriate format and contains valid fields. The certificate can be expired, or come from an untrusted Certificate Authority (CA) and still be cryptographically correct. Only version 3.3.1 of the Cisco Secure ACS for Windows and Cisco Secure ACS Solution Engine is affected by this vulnerability. Cisco has made free software available to address this pro
No detection rules found.
No writeups or analysis indexed.
http://www.ciac.org/ciac/bulletins/p-028.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20041102-acs-eap-tls.shtmlhttp://www.securityfocus.com/bid/11577https://exchange.xforce.ibmcloud.com/vulnerabilities/17936http://www.ciac.org/ciac/bulletins/p-028.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20041102-acs-eap-tls.shtmlhttp://www.securityfocus.com/bid/11577https://exchange.xforce.ibmcloud.com/vulnerabilities/17936
2005-01-10
Published