First published: Wed Dec 14 2016(Updated: )
A vulnerability in the Active Directory integration component of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a denial of service (DoS) attack. More Information: CSCuw15041. Known Affected Releases: 1.2(1.199).
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine (ISE) | =1.2\(1.199\) | |
Cisco Identity Services Engine (ISE) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9198 has a severity rating that allows for a denial of service attack by an unauthenticated remote attacker.
To fix CVE-2016-9198, upgrade to a version of Cisco Identity Services Engine that is not affected, as specified in the advisory.
CVE-2016-9198 affects Cisco Identity Services Engine version 1.2(1.199).
Yes, CVE-2016-9198 can be exploited remotely by an unauthenticated attacker.
The potential impact of CVE-2016-9198 is a denial of service condition that can impede the functionality of affected systems.