Description
Intelligent Automation for Cloud (IAC) in Cisco Cloud Portal 9.4.1 and earlier includes a cryptographic key in binary files, which makes it easier for remote attackers to obtain cleartext data from an arbitrary IAC installation by leveraging knowledge of this key, aka Bug IDs CSCui34764, CSCui34772, CSCui34776, CSCui34798, CSCui34800, CSCui34805, CSCui34809, CSCui34810, CSCui34813, CSCui34814, and CSCui34818.
References (2)
Core 2
Core References
Various Sources vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0694
Various Sources x_refsource_confirm
http://tools.cisco.com/security/center/viewAlert.x?alertId=33336
Scores
EPSS
0.0117
EPSS Percentile
64.2%
Details
CWE
CWE-255
Status
published
Products (6)
cisco/cloud_portal
9.1 sp1 (3 CPE variants)
cisco/cloud_portal
9.3
cisco/cloud_portal
9.3.1
cisco/cloud_portal
9.3.2
cisco/cloud_portal
9.4
cisco/cloud_portal
< 9.4.1
Published
Mar 14, 2014
Tracked Since
Feb 18, 2026