Cisco Identity Services Engine CVE-2018-0215 Cross Site Request Forgery Vulnerability



Cisco Identity Services Engine is prone to an cross-site request-forgery vulnerability.

Exploiting this issue may allow a remote attacker to perform certain unauthorized actions and gain access to the affected application. Other attacks are also possible.

This issue is being tracked by Cisco Bug ID CSCuv32863.

Information

Bugtraq ID: 103324
Class: Input Validation Error
CVE: CVE-2018-0215

Remote: Yes
Local: No
Published: Mar 07 2018 12:00AM
Updated: Mar 07 2018 12:00AM
Credit: Cisco
Vulnerable: Cisco Identity Services Engine 0


Not Vulnerable:

Exploit


To exploit this issue an attacker must entice an unsuspecting victim to open a malicious URI.


Related Posts