Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2014-2130

Cisco Secure Access Control Server (ACS) provides an unintentional administration web interface based on Apache Tomcat, which allows remote authenticated users to modify application files and configuration files, and consequently execute arbitrary code, by leveraging administrative privileges, aka Bug ID CSCuj83189.

SeverityMEDIUM
CVSS6.5
CWECWE-264
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Secure Access Control System (ACS) Cisco-SA-20150309-CVE-2014-2130 Cisco OpenVuln