// For flags

CVE-2018-0275

 

Severity Score

6.7
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A vulnerability in the support tunnel feature of Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to access the device's shell. The vulnerability is due to improper configuration of the support tunnel feature. An attacker could exploit this vulnerability by tricking the device into unlocking the support user account and accessing the tunnel password and device serial number. A successful exploit could allow the attacker to run any system command with root access. This affects Cisco Identity Services Engine (ISE) software versions prior to 2.2.0.470. Cisco Bug IDs: CSCvf54409.

Una vulnerabilidad en la característica de túnel de soporte de Cisco Identity Services Engine (ISE) podría permitir que un atacante remoto sin autenticar acceda al shell del dispositivo. La vulnerabilidad se debe a la configuración inadecuada de la característica de túnel de soporte. Un atacante podría explotar esta vulnerabilidad engañando al dispositivo para que desbloquee la cuenta de usuario de soporte y acceda a la contraseña del túnel y al número de serie del dispositivo. Un exploit con éxito podría permitir que el atacante ejecute cualquier comando del sistema con acceso root. Esto afecta al software Cisco Identity Services Engine (ISE) en versiones anteriores a la 2.2.0.470. Cisco Bug IDs: CSCvf54409.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-11-27 CVE Reserved
  • 2018-04-19 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-16: Configuration
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Identity Services Engine
Search vendor "Cisco" for product "Identity Services Engine"
< 2.2\(0.470\)
Search vendor "Cisco" for product "Identity Services Engine" and version " < 2.2\(0.470\)"
-
Affected