CVE-2015-4331: Low severity cisco prime infrastructure vulnerability
Cisco Prime Infrastructure (PI) 1.4(0.45) and earlier, when AAA authentication is used, allows remote authenticated users to bypass intended access restrictions via a username with a modified composition of lowercase and uppercase characters, aka Bug ID CSum59958.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4331?
CVE-2015-4331 is considered to have a medium severity due to its impact on access control.
How do I fix CVE-2015-4331?
To fix CVE-2015-4331, upgrade Cisco Prime Infrastructure to version 1.4(0.46) or later.
What are the potential impacts of exploiting CVE-2015-4331?
Exploiting CVE-2015-4331 could allow remote authenticated users to bypass access restrictions, leading to unauthorized access.
Which software versions are affected by CVE-2015-4331?
CVE-2015-4331 affects Cisco Prime Infrastructure versions up to and including 1.4(0.45).
Who is at risk for CVE-2015-4331?
Organizations using vulnerable versions of Cisco Prime Infrastructure with AAA authentication are at risk for CVE-2015-4331.