CVE-2015-4182: Medium severity cisco identity services engine vulnerability
The administrative web interface in Cisco Identity Services Engine (ISE) before 1.3 allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information or change settings, via unspecified vectors, aka Bug ID CSCui72087.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4182?
CVE-2015-4182 is considered a medium severity vulnerability as it allows remote authenticated users to bypass access restrictions.
How do I fix CVE-2015-4182?
To fix CVE-2015-4182, update Cisco Identity Services Engine to version 1.3 or later.
Who is affected by CVE-2015-4182?
CVE-2015-4182 affects users of Cisco Identity Services Engine versions prior to 1.3.
What kind of information can be accessed due to CVE-2015-4182?
Due to CVE-2015-4182, sensitive information can be obtained and system settings can be changed by malicious users.
Can CVE-2015-4182 be exploited remotely?
Yes, CVE-2015-4182 can be exploited by remote authenticated users who can access the administrative web interface.