Description
Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture, aka "NACATTACK." NOTE: this attack might be limited to authenticated users and devices.
References (4)
Core 4
Core References
Various Sources x_refsource_misc
http://www.blackhat.com/html/bh-europe-07/bh-eu-07-speakers.html#Dror
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/34123
Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_response09186a00808110da.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/33557
Scores
EPSS
0.0143
EPSS Percentile
70.3%
Details
Status
published
Products (1)
cisco/trust_agent
Published
Apr 02, 2007
Tracked Since
Feb 18, 2026