Zurück zur Liste

Cisco Identity Services Engine Remote Code Execution Vulnerabilities — CISCO-SA-ISE-RCE-4FVEREPV

Cisco · Cisco · CISCO-SA-ISE-RCE-4FVEREPV

ID
CISCO-SA-ISE-RCE-4FVEREPV
Datum
Activity
Quelle
Cisco
Vendor
Cisco
Risiko
critical

Zusammenfassung

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit these vulnerabilities, the attacker must have at least Read Only Admin credentials. These vulnerabilities are due to insufficient validation of user-supplied input. An attacker could exploit these…

Produkt

Cisco Identity Services Engine Remote Code Execution

Was tun?

Allgemeine, vorsichtige Schritte (bitte prüfe die offizielle Quelle für Details):

  • Priorisiere sofort Patches oder Mitigations (hohes akutes Risiko).
  • Identifiziere betroffene Produktversionen und prüfe, ob du betroffen bist.
  • Spiele Hersteller-Updates/Patches ein oder setze empfohlene Mitigations um.
  • Lies das offizielle Advisory für betroffene Versionen und konkrete Schritte.

Offizielles Advisory

Mehr dazu