CVE Vulnerabilities

CVE-2023-20106

Published: May 18, 2023 | Modified: Nov 07, 2023
CVSS 3.x
3.8
LOW
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Affected Software

Name Vendor Start Version End Version
Identity_services_engine Cisco 3.1 (including) 3.1 (including)
Identity_services_engine Cisco 3.1-patch1 (including) 3.1-patch1 (including)
Identity_services_engine Cisco 3.1-patch3 (including) 3.1-patch3 (including)
Identity_services_engine Cisco 3.1-patch4 (including) 3.1-patch4 (including)
Identity_services_engine Cisco 3.1-patch5 (including) 3.1-patch5 (including)
Identity_services_engine Cisco 3.2 (including) 3.2 (including)
Identity_services_engine Cisco 3.2-patch1 (including) 3.2-patch1 (including)

References