CVE-2012-5424
published 2012-11-07CVE-2012-5424: Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP is used…
PriorityP434medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.45%
82.5th percentile
Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP is used, does not properly validate passwords, which allows remote attackers to bypass authentication by sending a valid username and a crafted password string, aka Bug ID CSCuc65634.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | secure | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
| cisco | secure_access_control_server | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
vendor_cisco·2012-11-07·CVSS 5.0
CVE-2012-5424 [MEDIUM] CWE-287 Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
Cisco Secure Access Control System (ACS) contains a vulnerability that could allow an unauthenticated, remote attacker to bypass TACACS+ based authentication services offered by the affected application.
The vulnerability is due to improper validation of user-supplied input processed by the affected software. An unauthenticated, remote attacker could exploit this vulnerability by sending a special sequence of characters when prompted for a targeted user's password. Successful exploitation could allow the attacker to gain unauthorized access to any system that uses TACACS+ and relies on the authentication service provided by the affected software in the networking environment.
Cisco has confirmed this vulnerab
Cisco
Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
vendor_cisco·2012-11-07·CVSS 5.0
CVE-2012-5424 [MEDIUM] CWE-287 Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
Cisco Secure Access Control System (ACS) contains a vulnerability that could allow an
unauthenticated, remote attacker to bypass TACACS+ based authentication
service offered by the affected product. The vulnerability is due to improper validation of the user-supplied password when TACACS+ is the authentication protocol and Cisco Secure ACS is configured with a Lightweight Directory Access Protocol (LDAP) external identity store.
An attacker may exploit this vulnerability by sending a special sequence of
characters when prompted for the user password. The attacker would need to know a valid username stored in the LDAP external identity store to exploit this
vulnerability, and the exploitation is limited to impe
Cisco
Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
vendor_cisco
CVE-2012-5424 Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
CVE-2012-5424: Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability
Cisco Secure Access Control System (ACS) contains a vulnerability that could allow an unauthenticated, remote attacker to bypass TACACS+ based authentication service offered by the affected product. The vulnerability is due to improper validation of the user-supplied password when TACACS+ is the authentication protocol and Cisco Secure ACS is configured with a Lightweight Directory Access Protocol (LDAP) external identity store. An attacker may exploit this vulnerability by sending a special sequence of characters when prompted for the user password. The attacker would need to know a valid username stored in the LDAP external identity store to exploit this vulnerability, and the exploitation is li
GHSA
GHSA-m5mg-489p-j2jg: Cisco Secure Access Control System (ACS) 5
ghsa_unreviewed·2022-05-17
CVE-2012-5424 [MEDIUM] CWE-20 GHSA-m5mg-489p-j2jg: Cisco Secure Access Control System (ACS) 5
Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP is used, does not properly validate passwords, which allows remote attackers to bypass authentication by sending a valid username and a crafted password string, aka Bug ID CSCuc65634.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/87251http://secunia.com/advisories/51194http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20121107-acshttp://www.securityfocus.com/bid/56433http://www.securitytracker.com/id?1027733https://exchange.xforce.ibmcloud.com/vulnerabilities/79860http://osvdb.org/87251http://secunia.com/advisories/51194http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20121107-acshttp://www.securityfocus.com/bid/56433http://www.securitytracker.com/id?1027733https://exchange.xforce.ibmcloud.com/vulnerabilities/79860
2012-11-07
Published