← Back

CVE-2016-1402

nvd nist
Published: May 21, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorization is enabled, allows remote attackers to cause a denial of service (authentication outage) via a crafted Password Authentication Protocol (PAP) authentication request, aka Bug ID CSCun25815.

Affected (6)

1 product
Identity Services Engine Software
Configuration A
6 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Cisco
Version 1.2.0.899 p1
Version 1.2.0.899 p2
Version 1.2.0.899 p3
Version 1.2.0.899 p4
Version 1.2.0.899 p5
Version 1.2.0.899 p6
Running on/withPlatform Versions
Cisco
Identity Services Engine
All versions

References (4)

Timeline

No history available yet.