CVE-2016-9198
published 2016-12-14CVE-2016-9198: A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to…
PriorityP341high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
3.30%
87.1th percentile
A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a denial of service (DoS) attack. More Information: CSCuw15041. Known Affected Releases: 1.2(1.199).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | identity_services_engine | — | — |
| cisco | identity_services_engine_active_directory_integration_component | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
vendor_cisco·2016-12-07·CVSS 5.0
CVE-2016-9198 [MEDIUM] CWE-399 Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a denial of service (DoS) attack.
The vulnerability is due to improper handling of Password Authentication Protocol (PAP) authentication requests when ISE is configured with an authorization policy based on Active Directory group membership. An attacker could exploit this vulnerability by crafting a special but formally correct PAP authentication request that will trigger the issue. An exploit could allow the attacker to cause all subsequent authentication requests for the same Active Directory domain to fail.
There are workarou
Cisco
Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
vendor_cisco
CVE-2016-9198 Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
CVE-2016-9198: Cisco Identity Services Engine Active Directory Integration Component Denial of Service Vulnerability
A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a denial of service (DoS) attack. The vulnerability is due to improper handling of Password Authentication Protocol (PAP) authentication requests when ISE is configured with an authorization policy based on Active Directory group membership. An attacker could exploit this vulnerability by crafting a special but formally correct PAP authentication request that will trigger the issue. An exploit could allow the attacker to cause all subsequent authentication requests for the same Active Directory domain to fail. There
GHSA
GHSA-9pvr-rv53-fw88: A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker
ghsa_unreviewed·2022-05-17
CVE-2016-9198 [HIGH] GHSA-9pvr-rv53-fw88: A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker
A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a denial of service (DoS) attack. More Information: CSCuw15041. Known Affected Releases: 1.2(1.199).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/94810http://www.securitytracker.com/id/1037415https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-isehttp://www.securityfocus.com/bid/94810http://www.securitytracker.com/id/1037415https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ise
2016-12-14
Published