CVE-2007-1800 Information
Feb 14, 2021
cve
Description
Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture aka \NACATTACK.\ NOTE: this attack might be limited to authenticated users and devices.
Reference
http://osvdb.org/34123 http://www.blackhat.com/html/bh-europe-07/bh-eu-07-speakers.htmlDror http://www.cisco.com/en/US/products/products_security_response09186a00808110da.html https://exchange.xforce.ibmcloud.com/vulnerabilities/33557
Share on: