cbcvebase.
CVE-2015-4182
published 2015-06-12

CVE-2015-4182: The administrative web interface in Cisco Identity Services Engine (ISE) before 1.3 allows remote authenticated users to bypass intended access restrictions…

PriorityP426medium5.5CVSS 2.0
AVNACLAuSCPIPAN
EPSS
2.09%
79.4th percentile
The administrative web interface in Cisco Identity Services Engine (ISE) before 1.3 allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information or change settings, via unspecified vectors, aka Bug ID CSCui72087.

Affected

9 ranges
VendorProductVersion rangeFixed in
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software
ciscoidentity_services_engine_software

CVSS provenance

nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_cisco5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.