#VU13944 Improper authorization in Policy Suite - CVE-2018-0393
Published: July 20, 2018
Policy Suite
Cisco Systems, Inc
Description
The vulnerability allows a remote authenticated attacker to make policy changes in the Policy Builder interface.
The vulnerability exists in the Policy Builder interface of Cisco Policy Suite due to insufficient authorization controls. A remote attacker can access the Policy Builder interface, modify an HTTP request and make changes to existing policies.