Vulnerability Details CVE-2007-1800
Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture, aka "NACATTACK." NOTE: this attack might be limited to authenticated users and devices.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 69.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-1800
-
cpe:2.3:a:cisco:trust_agent:-
-
cpe:2.3:a:cisco:trust_agent:1
-
cpe:2.3:a:cisco:trust_agent:1.0
-
cpe:2.3:a:cisco:trust_agent:2.0
-
cpe:2.3:a:cisco:trust_agent:2.0.1
-
cpe:2.3:a:cisco:trust_agent:2.1
-
cpe:2.3:a:cisco:trust_agent:2.1.103.0
-
cpe:2.3:a:cisco:trust_agent:2.1.104.0