VYPR
Medium severity4.3NVD Advisory· Published Jan 20, 2023· Updated Jun 17, 2026

CVE-2022-20965

CVE-2022-20965

Description

A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, remote attacker to take privileges actions within the web-based management interface. This vulnerability is due to improper access control on a feature within the web-based management interface of the affected system. An attacker could exploit this vulnerability by accessing features through direct requests, bypassing checks within the application. A successful exploit could allow the attacker to take privileged actions within the web-based management interface that should be otherwise restricted.

{{value}} ["%7b%7bvalue%7d%7d"])}]]

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

35
  • cpe:2.3:a:cisco:identity_services_engine:*:*:*:*:*:*:*:*+ 33 more
    • cpe:2.3:a:cisco:identity_services_engine:*:*:*:*:*:*:*:*range: <2.6.0
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch10:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch11:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch12:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch2:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch3:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch5:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch6:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch7:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch8:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.6.0:patch9:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch2:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch3:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch4:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch5:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch6:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:2.7.0:patch7:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch2:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch3:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch4:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch5:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.0.0:patch6:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.1:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.1:patch1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.1:patch3:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.1:patch4:*:*:*:*:*:*
    • cpe:2.3:a:cisco:identity_services_engine:3.2:-:*:*:*:*:*:*
    • (no CPE)range: 2.6.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.