Vulnerability Details CVE-2019-15282
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker read tcpdump files generated on an affected device. The vulnerability is due an issue in the authentication logic of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the web interface. A successful exploit could allow the attacker to read a tcpdump file generated with a particular naming scheme.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 76.8%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 5.0
Products affected by CVE-2019-15282
-
cpe:2.3:a:cisco:identity_services_engine_software:-
-
cpe:2.3:a:cisco:identity_services_engine_software:1.0
-
cpe:2.3:a:cisco:identity_services_engine_software:1.0.4.573
-
cpe:2.3:a:cisco:identity_services_engine_software:1.0_base
-
cpe:2.3:a:cisco:identity_services_engine_software:1.0_mr_base
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1(4.1)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1.1
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1.2
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1.3
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1.4
-
cpe:2.3:a:cisco:identity_services_engine_software:1.1_base
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2(0.747)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2(0.793)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2(0.899)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2(1.198)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2(1.901)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2.0.899
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2.1
-
cpe:2.3:a:cisco:identity_services_engine_software:1.2_base
-
cpe:2.3:a:cisco:identity_services_engine_software:1.3
-
cpe:2.3:a:cisco:identity_services_engine_software:1.3(0.722)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.3(0.876)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.3(106.146)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.3(120.135)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4(0.109)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4(0.181)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4(0.253)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4(0.876)
-
cpe:2.3:a:cisco:identity_services_engine_software:1.4(0.908)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.0(0.147)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.0(0.169)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.0(0.901)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.0(1.130)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.1(0.188)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.1(0.229)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.1(0.905)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.2(0.231)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.3(0.298)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.4(0.126)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.4(0.183)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.4(0.223)
-
cpe:2.3:a:cisco:identity_services_engine_software:2.4(0.357)