First published: Wed Oct 16 2013(Updated: )
The file-upload feature in Cisco Identity Services Engine (ISE) allows remote authenticated users to cause a denial of service (disk consumption and administration-interface outage) by uploading many files, aka Bug ID CSCui67519.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine | ||
Cisco Identity Services Engine (ISE) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5540 is classified as a medium severity vulnerability due to its potential to cause denial of service.
To address CVE-2013-5540, ensure that you have applied the latest patches and updates provided by Cisco for the Identity Services Engine software.
Remote authenticated users of Cisco Identity Services Engine software are affected by CVE-2013-5540.
CVE-2013-5540 exploits the file-upload feature, allowing users to upload excessive files, leading to disk consumption.
The potential impacts of CVE-2013-5540 include disk consumption and downtime of the administration interface.