No login? No problem: Cisco ISE flaw gave root access before fix arrived, say researchers
ID: 353e2b88-cbfe-544a-b5fd-271991b3639d
STIX ID: report--353e2b88-cbfe-544a-b5fd-271991b3639d
Feed Name: The Register (Security)
Threat Score
Shadowserver observed active exploitation starting in early July of critical unauthenticated remote code execution vulnerabilities in Cisco Identity Services Engine (ISE) (multiple CVEs rated 10.0). Cisco published advisories and patches in late June and mid-July and later confirmed some in-the-wild exploitation; no workarounds exist, so affected customers are urged to upgrade immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
