The administrative web interface in the Access Control Server in Cisco Secure Access Control System (ACS) does not properly restrict the report view page, which allows remote authenticated users to obtain sensitive information via a direct request, aka Bug ID CSCue79279.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2013-06-12T01:00:00Z

Updated: 2024-09-17T03:07:16.593Z

Reserved: 2013-05-06T00:00:00Z

Link: CVE-2013-3380

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-06-12T03:30:15.243

Modified: 2018-10-30T16:25:02.903

Link: CVE-2013-3380

cve-icon Redhat

No data.