CVE-2014-0648
16.01.2014, 19:55
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication and authorization requirements, which allows remote attackers to obtain administrative access via a request to this interface, aka Bug ID CSCud75187.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | secure_access_control_system | 𝑥 ≤ 5.4.0.46.6 |
cisco | secure_access_control_system | 5.1 |
cisco | secure_access_control_system | 5.1.0.44 |
cisco | secure_access_control_system | 5.1.0.44.1 |
cisco | secure_access_control_system | 5.1.0.44.2 |
cisco | secure_access_control_system | 5.1.0.44.3 |
cisco | secure_access_control_system | 5.1.0.44.4 |
cisco | secure_access_control_system | 5.1.0.44.5 |
cisco | secure_access_control_system | 5.2 |
cisco | secure_access_control_system | 5.2.0.26 |
cisco | secure_access_control_system | 5.2.0.26.1 |
cisco | secure_access_control_system | 5.2.0.26.2 |
cisco | secure_access_control_system | 5.3.0.40.1 |
cisco | secure_access_control_system | 5.3.0.40.2 |
cisco | secure_access_control_system | 5.3.0.40.3 |
cisco | secure_access_control_system | 5.3.0.40.4 |
cisco | secure_access_control_system | 5.3.0.40.5 |
cisco | secure_access_control_system | 5.3.0.40.6 |
cisco | secure_access_control_system | 5.3.0.40.7 |
cisco | secure_access_control_system | 5.3.0.40.8 |
cisco | secure_access_control_system | 5.3.0.40.9 |
cisco | secure_access_control_system | 5.4.0.46.1 |
cisco | secure_access_control_system | 5.4.0.46.2 |
cisco | secure_access_control_system | 5.4.0.46.3 |
cisco | secure_access_control_system | 5.4.0.46.4 |
cisco | secure_access_control_system | 5.4.0.46.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References