cbcvebase.
CVE-2011-3290
published 2011-09-21

CVE-2011-3290: Cisco Identity Services Engine (ISE) before 1.0.4.MR2 has default Oracle database credentials, which allows remote attackers to modify settings or perform…

PriorityP347critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.28%
81.1th percentile
Cisco Identity Services Engine (ISE) before 1.0.4.MR2 has default Oracle database credentials, which allows remote attackers to modify settings or perform unspecified other administrative actions via unknown vectors, aka Bug ID CSCts59135.

Affected

4 ranges
VendorProductVersion rangeFixed in
ciscoidentity_services_engine_database_default_credentials
ciscoidentity_services_engine_software<= 1.0.4
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.