CVE-2018-0121
published 2018-02-22CVE-2018-0121: A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an…
PriorityP266critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
2.56%
83.3th percentile
A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrator privileges on an affected system. The vulnerability is due to improper security restrictions that are imposed by the web-based service portal of the affected software. An attacker could exploit this vulnerability by submitting an empty password value to an affected portal when prompted to enter an administrative password for the portal. A successful exploit could allow the attacker to bypass authentication and gain administrator privileges for the web-based service portal of the affected software. This vulnerability affects Cisco Elastic Services Controller Software Release 3.0.0. Cisco Bug IDs: CSCvg29809.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | elastic_services_controller | — | — |
| cisco | elastic_services_controller_service_portal | — | — |
| cisco | virtual_managed_services | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Authentication bypass is triggered by submitting an empty password value to the web-based service portal when prompted for an administrative password ↗
- →Only Cisco Elastic Services Controller Software Release 3.0.0 is affected; scope detection/hunting to that specific version ↗
- →Monitor web-based service portal authentication logs for login attempts with blank/empty password fields that succeed, indicating exploitation ↗
- ·Vulnerability is limited to Cisco Elastic Services Controller Software Release 3.0.0 only; other releases are not stated to be affected ↗
- ·No workarounds exist for this vulnerability; patching via Cisco software updates is the only remediation path ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7h7w-c9m3-p7hv: A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unaut
ghsa_unreviewed·2022-05-13
CVE-2018-0121 [CRITICAL] CWE-287 GHSA-7h7w-c9m3-p7hv: A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unaut
A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrator privileges on an affected system. The vulnerability is due to improper security restrictions that are imposed by the web-based service portal of the affected software. An attacker could exploit this vulnerability by submitting an empty password value to an affected portal when prompted to enter an administrative password for the portal. A successful exploit could allow the attacker to bypass authentication and gain administrator privileges for the web-based service portal of the affected software. This vulnerability affects Cisco Elastic Serv
Cisco
Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
vendor_cisco·2018-02-21·CVSS 9.8
CVE-2018-0121 [CRITICAL] CWE-287 Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrator privileges on an affected system.
The vulnerability is due to improper security restrictions that are imposed by the web-based service portal of the affected software. An attacker could exploit this vulnerability by submitting an empty password value to an affected portal when prompted to enter an administrative password for the portal. A successful exploit could allow the attacker to bypass authentication and gain administrator privileges for the web-based
Cisco
Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
vendor_cisco·CVSS 3.0
CVE-2018-0121 Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
CVE-2018-0121: Cisco Elastic Services Controller Service Portal Authentication Bypass Vulnerability
A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrator privileges on an affected system. The vulnerability is due to improper security restrictions that are imposed by the web-based service portal of the affected software. An attacker could exploit this vulnerability by submitting an empty password value to an affected portal when prompted to enter an administrative password for the portal. A successful exploit could allow the attacker to bypass authentication and gain administrator privileges for
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2018-02-22
Published