Unrated severityNVD Advisory· Published Jan 15, 2014· Updated Apr 29, 2026
CVE-2014-0665
CVE-2014-0665
Description
The RBAC implementation in Cisco Identity Services Engine (ISE) Software does not properly verify privileges for support-bundle downloads, which allows remote authenticated users to obtain sensitive information via a download action, as demonstrated by obtaining read access to the user database, aka Bug ID CSCul83904.
Affected products
1- cpe:2.3:a:cisco:identity_services_engine_software:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0665nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/64939nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1029624nvdThird Party AdvisoryVDB Entry
- osvdb.org/102118nvd
- secunia.com/advisories/56439nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/90463nvd
News mentions
0No linked articles in our index yet.