QID 317320
Date Published: 2023-04-10
QID 317320: Cisco Identity Services Engine (ISE) Command Injection Vulnerabilities (cisco-sa-ise-injection-2XbOg9Dg)
Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To exploit these vulnerabilities, an attacker must have valid Administrator privileges on the affected device.
Affected Versions:
from 3.2 prior to 3.2p1
QID Detection Logic (Authenticated):
The check matches the Cisco ISE version and ise_patch retrieved via Unix Auth using "show version" command.
A successful exploit could allow the attacker to elevate privileges to root.
Solution
Customers are advised to refer to cisco-sa-ise-injection-2XbOg9Dg for more information.
Vendor References
- cisco-sa-ise-injection-2XbOg9Dg -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-injection-2XbOg9Dg
CVEs related to QID 317320
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ise-injection-2XbOg9Dg |
|