CVE-2015-4182

CWE-2644 documents4 sources
Severity
5.5MEDIUM
EPSS
0.3%
top 48.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 12
Latest updateMay 17

Description

The administrative web interface in Cisco Identity Services Engine (ISE) before 1.3 allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information or change settings, via unspecified vectors, aka Bug ID CSCui72087.

CVSS vector

AV:N/AC:L/C:P/I:P/A:NExploitability: 8.0 | Impact: 4.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-977m-h3qq-3266: The administrative web interface in Cisco Identity Services Engine (ISE) before 12022-05-17
CVEList
CVE-2015-4182: The administrative web interface in Cisco Identity Services Engine (ISE) before 12015-06-12

📋Vendor Advisories

1
Cisco
Cisco Identity Services Engine Improper Web Page Controls Privilege Escalation Vulnerability2015-06-11
CVE-2015-4182 (MEDIUM CVSS 5.5) | The administrative web interface in | cvebase.io