Vulnerabilities > CVE-2011-0951 - Credentials Management vulnerability in Cisco Secure Access Control System

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
cisco
CWE-255
metasploit

Summary

The web-based management interface in Cisco Secure Access Control System (ACS) 5.1 before 5.1.0.44.6 and 5.2 before 5.2.0.26.3 allows remote attackers to change arbitrary user passwords via unspecified vectors, aka Bug ID CSCtl77440.

Common Weakness Enumeration (CWE)

Metasploit

descriptionThis module exploits an authentication bypass issue which allows arbitrary password change requests to be issued for any user in the local store. Instances of Secure ACS running version 5.1 with patches 3, 4, or 5 as well as version 5.2 with either no patches or patches 1 and 2 are vulnerable.
idMSF:AUXILIARY/ADMIN/CISCO/CISCO_SECURE_ACS_BYPASS
last seen2020-01-22
modified2017-07-24
published2012-05-13
references
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/auxiliary/admin/cisco/cisco_secure_acs_bypass.rb
titleCisco Secure ACS Unauthorized Password Change