Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2021-34759

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker with administrative credentials to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by injecting malicious code into specific pages of the interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information. To exploit this vulnerability, an attacker would need valid administrative credentials.

  • Published: Sep 2, 2021
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-34759
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.8
  • AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

CVSS v2:

  • Severity: Low
  • Score: 3.5
  • AV:N/AC:M/Au:S/C:N/I:P/A:N
Software From Fixed in
cisco / identity_services_engine 2.4.0-patch7 2.4.0-patch7.x
cisco / identity_services_engine 2.4.0-patch8 2.4.0-patch8.x
cisco / identity_services_engine 2.4.0-patch9 2.4.0-patch9.x
cisco / identity_services_engine 2.4.0-patch1 2.4.0-patch1.x
cisco / identity_services_engine 2.4.0-patch2 2.4.0-patch2.x
cisco / identity_services_engine 2.4.0-patch3 2.4.0-patch3.x
cisco / identity_services_engine 2.4.0-patch4 2.4.0-patch4.x
cisco / identity_services_engine 2.4.0-patch5 2.4.0-patch5.x
cisco / identity_services_engine 2.4.0-patch6 2.4.0-patch6.x
cisco / identity_services_engine 2.3.0-patch1 2.3.0-patch1.x
cisco / identity_services_engine 2.3.0-patch2 2.3.0-patch2.x
cisco / identity_services_engine 2.3.0-patch3 2.3.0-patch3.x
cisco / identity_services_engine 2.3.0-patch4 2.3.0-patch4.x
cisco / identity_services_engine 2.3.0-patch5 2.3.0-patch5.x
cisco / identity_services_engine 2.3.0-patch6 2.3.0-patch6.x
cisco / identity_services_engine 2.3.0 2.3.0.x
cisco / identity_services_engine 2.6.0-patch1 2.6.0-patch1.x
cisco / identity_services_engine 2.6.0-patch2 2.6.0-patch2.x
cisco / identity_services_engine 2.6.0-patch3 2.6.0-patch3.x
cisco / identity_services_engine 2.6.0-patch6 2.6.0-patch6.x
cisco / identity_services_engine 2.6.0-patch5 2.6.0-patch5.x
cisco / identity_services_engine 2.6.0 2.6.0.x
cisco / identity_services_engine 2.4.0-patch12 2.4.0-patch12.x
cisco / identity_services_engine 2.3.0-patch7 2.3.0-patch7.x
cisco / identity_services_engine 2.2.0-patch16 2.2.0-patch16.x
cisco / identity_services_engine 2.6.0-patch7 2.6.0-patch7.x
cisco / identity_services_engine 2.7.0-patch2 2.7.0-patch2.x
cisco / identity_services_engine 3.0.0-patch1 3.0.0-patch1.x
cisco / identity_services_engine 2.6.0-patch8 2.6.0-patch8.x
cisco / identity_services_engine 2.4.0-patch13 2.4.0-patch13.x
cisco / identity_services_engine 2.4.0-patch11 2.4.0-patch11.x
cisco / identity_services_engine 2.4.0-patch10 2.4.0-patch10.x
cisco / identity_services_engine 2.4.0 2.4.0.x
cisco / identity_services_engine 3.0.0-patch2 3.0.0-patch2.x
cisco / identity_services_engine 2.7.0-patch1 2.7.0-patch1.x
cisco / identity_services_engine 2.2.0-patch1 2.2.0-patch1.x
cisco / identity_services_engine 2.2.0-patch10 2.2.0-patch10.x
cisco / identity_services_engine 2.2.0-patch12 2.2.0-patch12.x
cisco / identity_services_engine 2.2.0-patch13 2.2.0-patch13.x
cisco / identity_services_engine 2.2.0-patch14 2.2.0-patch14.x
cisco / identity_services_engine 2.2.0-patch15 2.2.0-patch15.x
cisco / identity_services_engine 2.2.0-patch2 2.2.0-patch2.x
cisco / identity_services_engine 2.2.0-patch3 2.2.0-patch3.x
cisco / identity_services_engine 2.2.0-patch4 2.2.0-patch4.x
cisco / identity_services_engine 2.2.0-patch5 2.2.0-patch5.x
cisco / identity_services_engine 2.2.0-patch6 2.2.0-patch6.x
cisco / identity_services_engine 2.2.0-patch7 2.2.0-patch7.x
cisco / identity_services_engine 2.2.0-patch8 2.2.0-patch8.x
cisco / identity_services_engine 2.2.0-patch9 2.2.0-patch9.x
cisco / identity_services_engine 2.4.0-patch14 2.4.0-patch14.x
cisco / identity_services_engine 3.0.0-patch3 3.0.0-patch3.x
cisco / identity_services_engine 2.7.0-patch3 2.7.0-patch3.x
cisco / identity_services_engine 2.7.0-patch4 2.7.0-patch4.x
cisco / identity_services_engine 2.6.0-patch9 2.6.0-patch9.x
cisco / identity_services_engine 2.2.0-patch17 2.2.0-patch17.x
cisco / identity_services_engine - 2.2.0
cisco / identity_services_engine 2.2.0 2.2.0.x