CVE-2017-6747

CRITICAL

Cisco Identity Services Engine 1.3-2.1.0 - Unauthenticated Authentication Bypass via External User Matching

Title source: llm
STIX 2.1

Description

A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local authentication. The vulnerability is due to improper handling of authentication requests and policy assignment for externally authenticated users. An attacker could exploit this vulnerability by authenticating with a valid external user account that matches an internal username and incorrectly receiving the authorization policy of the internal account. An exploit could allow the attacker to have Super Admin privileges for the ISE Admin portal. This vulnerability does not affect endpoints authenticating to the ISE. The vulnerability affects Cisco ISE, Cisco ISE Express, and Cisco ISE Virtual Appliance running Release 1.3, 1.4, 2.0.0, 2.0.1, or 2.1.0. Release 2.2.x is not affected. Cisco Bug IDs: CSCvb10995.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1039054

Scores

CVSS v3 9.8
EPSS 0.0548
EPSS Percentile 91.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (19)
cisco/identity_services_engine 1.3\(0.722\)
cisco/identity_services_engine 1.3\(0.876\)
cisco/identity_services_engine 1.3\(0.909\)
cisco/identity_services_engine 1.3\(106.146\)
cisco/identity_services_engine 1.3\(120.135\)
cisco/identity_services_engine 1.4\(0.109\)
cisco/identity_services_engine 1.4\(0.181\)
cisco/identity_services_engine 1.4\(0.253\)
cisco/identity_services_engine 1.4\(0.908\)
cisco/identity_services_engine 2.0\(0.147\)
... and 9 more
Published Aug 07, 2017
Tracked Since Feb 18, 2026