Medium severity6.5NVD Advisory· Published Jan 23, 2019· Updated Jun 17, 2026
CVE-2018-0187
CVE-2018-0187
Description
A vulnerability in the Admin portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain confidential information for privileged accounts. The vulnerability is due to the improper handling of confidential information. An attacker could exploit this vulnerability by logging into the web interface on a vulnerable system. An exploit could allow an attacker to obtain confidential information for privileged accounts. This information could then be used to impersonate or negatively impact the privileged account on the affected system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:cisco:identity_services_engine:2.4\(0.901.1\):*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:identity_services_engine:2.4\(0.901.1\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:identity_services_engine:2.4\(0.901\):*:*:*:*:*:*:*
- (no CPE)range: n/a
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/106717nvdThird Party Advisory
- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190123-ise-info-disclosurenvdVendor Advisory
News mentions
0No linked articles in our index yet.