CVE-2014-3275
EUVD-2014-328826.05.2014, 00:25
SQL injection vulnerability in the web framework in Cisco Identity Services Engine (ISE) 1.2(.1 patch 2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCul21337.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cisco | identity_services_engine_software | 𝑥 ≤ 1.2 |
| cisco | identity_services_engine_software | 1.0 |
| cisco | identity_services_engine_software | 1.1 |
𝑥
= Vulnerable software versions
References