First published: Wed Nov 01 2023(Updated: )
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an attacker to upload arbitrary files or disable Cisco Discovery Protocol (CDP) processing on an affected device.For more information about these vulnerabilities, see the '#details'
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine (ISE) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of cisco-sa-ise-file-upload-FceLP4xs is high due to its potential to allow unauthorized file uploads.
To fix cisco-sa-ise-file-upload-FceLP4xs, update your Cisco Identity Services Engine to the latest version provided by Cisco.
Cisco Identity Services Engine versions prior to the latest update are affected by cisco-sa-ise-file-upload-FceLP4xs.
cisco-sa-ise-file-upload-FceLP4xs can facilitate attacks involving arbitrary file uploads and potentially disabling CDP processing.
Currently, the recommended action for cisco-sa-ise-file-upload-FceLP4xs is to apply the necessary updates, as there are no effective workarounds.