First published: Wed Apr 03 2024(Updated: )
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device.This vulnerability is due to
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine (ISE) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The cisco-sa-ise-csrf-NfAKXrp5 vulnerability is rated as high severity due to the risk of unauthorized actions on Cisco Identity Services Engine devices.
To remediate the cisco-sa-ise-csrf-NfAKXrp5 vulnerability, users should apply the latest security patches provided by Cisco for the Identity Services Engine.
The cisco-sa-ise-csrf-NfAKXrp5 vulnerability is specifically linked to cross-site request forgery (CSRF) attacks.
Organizations using Cisco Identity Services Engine (ISE) are potentially affected by the cisco-sa-ise-csrf-NfAKXrp5 vulnerability.
Yes, the cisco-sa-ise-csrf-NfAKXrp5 vulnerability can be exploited by an unauthenticated, remote attacker.