cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
514
Views
5
Helpful
1
Replies

CSCvs44006 - Cisco Identity Services Engine Cross-Site Scripting Vulnerability

hp-it-network
Level 1
Level 1

Hello,

 

which release of Cisco ISE has this bug fixed? I can not find this bug in "Resolved Caveatas" section of any Cisco ISE version (2.7 patch 1, 2.6 patch 6, 2.4 patch 12) release notes.

Thank you for reply.

1 Reply 1

matthew.shelley
Level 1
Level 1

Hello,

 

This has been fixed in Cisco ISE release 2.6 patch 7 and at the time of writing this bug has had it's status changed to "Fixed", but it might still affect 2.7 patch 1 due to the condition stating that 2.7 and earlier.

 

Conditions:
At the time of publication, this vulnerability affected Identity Services Engine releases 2.7 and earlier.