QID 317289
Date Published: 2023-04-05
QID 317289: Cisco Identity Services Engine (ISE) Extensible Markup Language (XML) External Entity Injection Vulnerability (cisco-sa-ise-xxe-inj-GecEHY58)
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to access sensitive information, conduct a server-side request forgery (SSRF) attack through an affected device, or negatively impact the responsiveness of the web-based management interface itself..
Affected Products
Cisco ISE following vulnerable versions:
3.2 and earlier
QID Detection Logic (Authenticated):
The check matches the Cisco ISE version and ise_patch retrieved via Unix Auth using "show version" command.
A successful exploit could allow the attacker to retrieve files from the local system, resulting in the disclosure of confidential information.
Customers are advised to refer to cisco-sa-ise-xxe-inj-GecEHY58 for more information.
- cisco-sa-ise-xxe-inj-GecEHY58 -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-xxe-inj-GecEHY58
CVEs related to QID 317289
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ise-xxe-inj-GecEHY58 |
|