Critical severity9.8NVD Advisory· Published Nov 8, 2018· Updated Jun 17, 2026
CVE-2018-15394
CVE-2018-15394
Description
A vulnerability in the Stealthwatch Management Console (SMC) of Cisco Stealthwatch Enterprise could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected system. The vulnerability is due to an insecure system configuration. An attacker could exploit this vulnerability by sending a crafted HTTP request to the targeted application. An exploit could allow the attacker to gain unauthenticated access, resulting in elevated privileges in the SMC.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:cisco:stealthwatch_enterprise:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:stealthwatch_enterprise:*:*:*:*:*:*:*:*range: <=6.10.2
- (no CPE)
- (no CPE)range: n/a
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/105853nvdThird Party AdvisoryVDB Entry
- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181107-smc-auth-bypassnvdVendor Advisory
News mentions
0No linked articles in our index yet.