Cisco Identity Services Engine (ISE) Software CVE-2018-0091 Cross Site Scripting Vulnerability
BID:102756
CVE-2018-91 |Info
Cisco Identity Services Engine (ISE) Software CVE-2018-0091 Cross Site Scripting Vulnerability
| Bugtraq ID: | 102756 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-0091 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 17 2018 12:00AM |
| Updated: | Jan 17 2018 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Cisco Identity Services Engine (ISE) Software 0 Cisco Identity Services Engine (ISE) 3300 Series Appliances 2.4(0.126) Cisco Identity Services Engine (ISE) 3300 Series Appliances 2.3(0.298) Cisco Identity Services Engine (ISE) 3300 Series Appliances 2.2(0.904) Cisco Identity Services Engine (ISE) 3300 Series Appliances 2.2(0.471) Cisco Identity Services Engine (ISE) 3300 Series Appliances 2.1(0.904) |
| Not Vulnerable: | |
Exploit / POC
Cisco Identity Services Engine (ISE) Software CVE-2018-0091 Cross Site Scripting Vulnerability
Attackers can exploit this issue by enticing an unsuspecting victim to follow a malicious URI.
Attackers can exploit this issue by enticing an unsuspecting victim to follow a malicious URI.
Solution / Fix
Cisco Identity Services Engine (ISE) Software CVE-2018-0091 Cross Site Scripting Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.