QID 317069
Date Published: 2021-10-07
QID 317069: Cisco Identity Services Engine (ISE) Privilege Escalation Vulnerability (cisco-sa-ise-priv-esc-UwqPrBM3)
A vulnerability in the REST API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a command injection attack and elevate privileges to root.
Affected Versions:
This vulnerability affects Cisco devices if they are running a vulnerable release of Cisco ISE in a distributed deployment.
2.4 prior to 2.6 Patch 10
prior to 2.7 Patch 5
prior to 3.1
QID Detection Logic (Authenticated):
The check matches the Cisco ISE version and ise_patch retrieved via Unix Auth using "show version" command.
A successful exploit could allow the attacker to run arbitrary commands with root privileges on the underlying operating system.
Customers are advised to refer to cisco-sa-ise-priv-esc-UwqPrBM3 for more information.
- cisco-sa-ise-priv-esc-UwqPrBM3 -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-priv-esc-UwqPrBM3
CVEs related to QID 317069
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ise-priv-esc-UwqPrBM3 |
|