Lucene search

K
ciscoCiscoCISCO-SA-CASE-MVULN-DYRDPC6W
HistoryFeb 24, 2021 - 4:00 p.m.

Cisco Application Services Engine Unauthorized Access Vulnerabilities

2021-02-2416:00:00
tools.cisco.com
44
cisco
application services engine
unauthorized access
vulnerabilities
remote attacker
privileged access
device-specific information
software updates
advisory

EPSS

0.004

Percentile

72.3%

Multiple vulnerabilities in Cisco Application Services Engine could allow an unauthenticated, remote attacker to gain privileged access to host-level operations or to learn device-specific information, create diagnostic files, and make limited configuration changes.

For more information about these vulnerabilities, see the Details [“#details”] section of this advisory.

Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-case-mvuln-dYrDPC6w [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-case-mvuln-dYrDPC6w”]

Affected configurations

Vulners
Node
ciscocisco_application_services_engine_softwareMatchany
OR
ciscocisco_application_services_engine_softwareMatchany
VendorProductVersionCPE
ciscocisco_application_services_engine_softwareanycpe:2.3:a:cisco:cisco_application_services_engine_software:any:*:*:*:*:*:*:*

EPSS

0.004

Percentile

72.3%

Related for CISCO-SA-CASE-MVULN-DYRDPC6W