Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-1867

A vulnerability in the REST API of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to bypass authentication on the REST API. The vulnerability is due to improper validation of API requests. An attacker could exploit this vulnerability by sending a crafted request to the REST API. A successful exploit could allow the attacker to execute arbitrary actions through the REST API with administrative privileges on an affected system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.218
EPSS Ranking 95.5%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 10.0
Products affected by CVE-2019-1867


Contact Us

Shodan ® - All rights reserved