CVE Database
/

CVE-2018-0211

Back to search

CVE-2018-0211

Published: Mar 8, 2018

Modified: Dec 2, 2024

PUBLISHED

Description

A vulnerability in specific CLI commands for the Cisco Identity Services Engine could allow an authenticated, local attacker to cause a denial of service (DoS) condition. The device may need to be manually rebooted to recover. The vulnerability is due to lack of proper input validation of the CLI user input for certain CLI commands. An attacker could exploit this vulnerability by authenticating to the device and issuing a crafted, malicious CLI command on the targeted device. A successful exploit could allow the attacker to cause a DoS condition. The attacker must have valid administrative privileges on the device to exploit this vulnerability. Cisco Bug IDs: CSCvf63414, CSCvh51992.

VendorProductVersions

n/a

Cisco Identity Services Engine

affected
Cisco Identity Services Engine

Weaknesses (CWE)

References

1040471
vdb-entry
x_refsource_SECTRACK
103334
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now