CVE-2014-3275
26.05.2014, 00:25
SQL injection vulnerability in the web framework in Cisco Identity Services Engine (ISE) 1.2(.1 patch 2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCul21337.
Vendor | Product | Version |
---|---|---|
cisco | identity_services_engine_software | 𝑥 ≤ 1.2 |
cisco | identity_services_engine_software | 1.0 |
cisco | identity_services_engine_software | 1.1 |
𝑥
= Vulnerable software versions
References