QID 317288
Date Published: 2023-04-05
QID 317288: Cisco Identity Services Engine (ISE) Privilege Escalation Vulnerabilities (cisco-sa-ise-os-injection-pxhKsDM)
Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To exploit these vulnerabilities, an attacker must have valid Administrator privileges on the affected device.
Affected Products
Cisco ISE following vulnerable versions:
3.2 prior to 3.2p1
QID Detection Logic (Authenticated):
The check matches the Cisco ISE version and ise_patch retrieved via Unix Auth using "show version" command.
A successful exploit could allow the attacker to elevate privileges to root.
Solution
Customers are advised to refer to cisco-sa-ise-os-injection-pxhKsDM for more information.
Vendor References
- cisco-sa-ise-os-injection-pxhKsDM -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-os-injection-pxhKsDM
CVEs related to QID 317288
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ise-os-injection-pxhKsDM |
|