CVE-2018-15386: Cisco Digital Network Architecture Center Unauthenticated Access Vulnerability
A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass authentication and have direct unauthorized access to critical management functions. The vulnerability is due to an insecure default configuration of the affected system. An attacker could exploit this vulnerability by directly connecting to the exposed services. An exploit could allow the attacker to retrieve and modify critical system files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-15386?
CVE-2018-15386 has been classified as critical due to the potential for unauthorized access to management functions.
How do I fix CVE-2018-15386?
To fix CVE-2018-15386, users should update to the latest version of Cisco Digital Network Architecture Center as recommended by Cisco.
Who is affected by CVE-2018-15386?
CVE-2018-15386 affects users of Cisco Digital Network Architecture Center versions 1.1, 1.1.1, 1.1.2, and 1.1.3.
What can an attacker do with CVE-2018-15386?
An attacker exploiting CVE-2018-15386 can bypass authentication and gain direct unauthorized access to critical management functions.
Is authentication required to exploit CVE-2018-15386?
No, authentication is not required to exploit CVE-2018-15386, making it especially dangerous.