CVE-2016-1297
published 2016-02-26CVE-2016-1297: The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC restrictions…
PriorityP355high8.8CVSS 3.0
AVNACLPRLUINSUCHIHAH
EPSS
2.80%
84.9th percentile
The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC restrictions and execute arbitrary CLI commands with admin privileges via an unspecified parameter in a POST request, aka Bug ID CSCul84801.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ace_4710_application_control_engine | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
| cisco | application_control_engine_software | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.09.0CRITICALAV:N/AC:L/Au:S/C:C/I:C/A:C
vendor_cisco8.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
vendor_cisco·2016-02-24·CVSS 8.5
CVE-2016-1297 [HIGH] CWE-78 Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
A vulnerability in the Device Manager GUI of the Cisco ACE 4710 Application Control Engine could allow an authenticated, remote attacker to execute any command-line interface (CLI) command on the ACE with admin user privileges.
The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by crafting a malicious HTTP POST request with injected CLI commands inside the value of a POST parameter value. An exploit could allow the attacker to bypass the role-based access control (RBAC) restrictions enforced by the Cisco ACE Device Manager GUI.
Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are a
Cisco
Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
vendor_cisco
CVE-2016-1297 Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
CVE-2016-1297: Cisco ACE 4710 Application Control Engine Command Injection Vulnerability
A vulnerability in the Device Manager GUI of the Cisco ACE 4710 Application Control Engine could allow an authenticated, remote attacker to execute any command-line interface (CLI) command on the ACE with admin user privileges. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by crafting a malicious HTTP POST request with injected CLI commands inside the value of a POST parameter value. An exploit could allow the attacker to bypass the role-based access control (RBAC) restrictions enforced by the Cisco ACE Device Manager GUI. Cisco has released software updates that address this vulnerability.
CWE: CWE-78, CWE-78
Bug IDs: CSCul8480
GHSA
GHSA-4x6r-cv3m-8ffm: The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3
ghsa_unreviewed·2022-05-17
CVE-2016-1297 [HIGH] CWE-78 GHSA-4x6r-cv3m-8ffm: The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3
The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC restrictions and execute arbitrary CLI commands with admin privileges via an unspecified parameter in a POST request, aka Bug ID CSCul84801.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2016-02-26
Published