Lucene search

K
ciscoCiscoCISCO-SA-20181003-DNA-UNAUTH-ACCESS
HistoryOct 03, 2018 - 4:00 p.m.

Cisco Digital Network Architecture Center Unauthenticated Access Vulnerability

2018-10-0316:00:00
tools.cisco.com
26

EPSS

0.004

Percentile

72.0%

A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass authentication and have direct unauthorized access to critical management functions.
The vulnerability is due to an insecure default configuration of the affected system. An attacker could exploit this vulnerability by directly connecting to the exposed services. An exploit could allow the attacker to retrieve and modify critical system files.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-dna-unauth-access [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-dna-unauth-access”]

Affected configurations

Vulners
Node
ciscocisco_digital_network_architecture_center_\(dna_center\)Matchany
OR
ciscocisco_digital_network_architecture_center_\(dna_center\)Matchany
VendorProductVersionCPE
ciscocisco_digital_network_architecture_center_\(dna_center\)anycpe:2.3:a:cisco:cisco_digital_network_architecture_center_\(dna_center\):any:*:*:*:*:*:*:*

EPSS

0.004

Percentile

72.0%

Related for CISCO-SA-20181003-DNA-UNAUTH-ACCESS