CVE-2015-0673

Severity
4.0MEDIUM
EPSS
0.2%
top 60.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 26
Latest updateMay 17

Description

Cisco Mobility Services Engine (MSE) 8.0(110.0) allows remote authenticated users to discover the passwords of arbitrary users by (1) reading log files or (2) using an unspecified GUI feature, aka Bug ID CSCut24792.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xmp2-8crv-9642: Cisco Mobility Services Engine (MSE) 82022-05-17
CVEList
CVE-2015-0673: Cisco Mobility Services Engine (MSE) 82015-03-26

📋Vendor Advisories

1
Cisco
Cisco Mobility Service Engine Password Information Disclosure Vulnerability2015-03-24