Descripción
A vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Engine (ISE) could allow an unauthenticated, remote attacker to access sensitive data, execute limited administrative operations, modify system configurations, or disrupt services within the impacted systems.
This exists because credentials are improperly generated when ISE is being deployed on platforms, resulting different sharing same credentials. These shared across multiple as long software release platform same. An exploit this by extracting user from that then using them other environments through unsecured ports. A successful systems.
Note: If Primary Administration node cloud, affected vulnerability. on-premises, it not affected.