First published: Sat May 21 2016(Updated: )
The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorization is enabled, allows remote attackers to cause a denial of service (authentication outage) via a crafted Password Authentication Protocol (PAP) authentication request, aka Bug ID CSCun25815.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine | ||
Cisco Identity Services Engine Software | =1.2.0.899-p1 | |
Cisco Identity Services Engine Software | =1.2.0.899-p2 | |
Cisco Identity Services Engine Software | =1.2.0.899-p3 | |
Cisco Identity Services Engine Software | =1.2.0.899-p4 | |
Cisco Identity Services Engine Software | =1.2.0.899-p5 | |
Cisco Identity Services Engine Software | =1.2.0.899-p6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.