Known vulnerabilities in Cisco Secure Access Control
Vendor:
Cisco Systems, Inc
Software:
Cisco Secure Access Control
Software CPE:
cpe:2.3:a:cisco_systems:cisco_secure_access_control:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.2(0.3)
5.8(1.5)
5.8.1.4
5.8(0.8)
5.7.0.15
5.5(0.46.2)
5.5(0.1)
4.2.1.15.0
4.2.1.15.1
4.2.1.15.4
4.2.1.15.10
4.2.1.15.2
4.2.1.15.3
4.2.1.15.8
4.2.1.15.9
4.2.1.15.6
4.2.1.15.7
5.0
5.2
5.1
5.3
4.1
4.0.1
4.0
3.2(1.20)
2.42
2.3.5.1
3.3.2
2.3.6.1
2.0
3.2(2) build 15
3.2(2)
3.2
3.2(1)
3.1
3.3
3.2(3)
3.3(1)
3.1.1
3.0.3
2.3
2.5
2.4
2.6.2
2.6.3
3.0.1
3.0
2.6
2.6.4
2.4(2)
2.3(3)
2.1
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU10902 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2018-0218 |
CWE-611 | Low | - | 10.03.2018 |
SB2018030912 |
||
| #VU10897 - Command injection CVE-2018-0147 |
CWE-77 | Low | - | 09.03.2018 |
SB2018030912 |
||
| #VU10901 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2018-0207 |
CWE-611 | Low | - | 08.03.2018 |
SB2018030912 |
||
| #VU7607 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2017-6769 |
CWE-79 | Low | - | 31.07.2017 |
SB2017073107 |