Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2014-0649

Disclosure Date: January 16, 2014 (last updated October 05, 2023)
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization requirements, which allows remote authenticated users to obtain superadmin access via a request to this interface, aka Bug ID CSCud75180.
0
Attacker Value
Unknown

CVE-2014-0650

Disclosure Date: January 16, 2014 (last updated October 05, 2023)
The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute arbitrary operating-system commands via a request to this interface, aka Bug ID CSCue65962.
0
Attacker Value
Unknown

CVE-2014-0648

Disclosure Date: January 16, 2014 (last updated October 05, 2023)
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication and authorization requirements, which allows remote attackers to obtain administrative access via a request to this interface, aka Bug ID CSCud75187.
0
Attacker Value
Unknown

CVE-2011-0951

Disclosure Date: April 04, 2011 (last updated October 04, 2023)
The web-based management interface in Cisco Secure Access Control System (ACS) 5.1 before 5.1.0.44.6 and 5.2 before 5.2.0.26.3 allows remote attackers to change arbitrary user passwords via unspecified vectors, aka Bug ID CSCtl77440.
0