CVE Advisory- ๋ถ€๋ถ„ ๊ณต๊ฐœ Cisco ISE Broken Access Control

CVE Advisory- ๋ถ€๋ถ„ ๊ณต๊ฐœ Cisco ISE Broken Access Control

Saguri๋Š” Cisco Identity Service Engine-3.1.0.518-PATCH3-22042809์˜ ๋ถ„์„์„ ์‹œ์ž‘ํ–ˆ์œผ๋ฉฐ Cisco ISE๋Š” ์ž์ฒด ๋„คํŠธ์›Œํฌ ๊ด€๋ฆฌ ๋„๊ตฌ๋กœ์„œ ์—ญ๋™์ ์ด๊ณ  ์ž๋™ํ™” ๋œ ๋ณด์•ˆ ๋ฐ '๊ด€๋ฆฌโ€™์ •์ฑ… ๋ฐฉ์‹์œผ๋กœ ๋„คํŠธ์›Œํฌ ์•ก์„ธ์Šค ์ œ์–ด ๊ตฌํ˜„ ๋ฐ ๋ฐฐํฌ๋ฅผ ๋‹จ์ˆœํ™”ํ•ฉ๋‹ˆ๋‹ค. ISE๋Š” ๊ฐœ์ž…์„ ๋ณด์žฅํ•˜๊ณ  ํ—ˆ์šฉํ•˜๋ฉฐ ๋ˆ„๊ฐ€, ์–ด๋–ค ์•ก์„ธ์Šค๋ฅผ ํ•  ์ˆ˜ ์žˆ๋Š”์ง€, ์–ธ์ œ ๋ฐ ์–ด๋–ป๊ฒŒ ์•ก์„ธ์Šค ํ•  ์ˆ˜ ์žˆ๋Š”์ง€๋ฅผ ๋ณด์žฅํ•ฉ๋‹ˆ๋‹ค. ๋˜ํ•œ, ์†Œํ”„ํŠธ์›จ์–ด๋กœ ์ •์˜๋œ ์•ก์„ธ์Šค ๋ฐ AU-ํ† ๋ฉ”์ดํŠธ ๋„คํŠธ์›Œํฌ ์„ธ๋ถ„ํ™” ๋ฐ ๋„คํŠธ์›Œํฌ ์ƒํƒœ ๊ฐ€์‹œ์„ฑ์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค. CVE-2022-20956-๊นจ์ง„ ์•ก์„ธ์Šค ์ œ์–ด-CWE 648 CVE-20๋ฅผ ํฌํ•จํ•ฉ๋‹ˆ๋‹ค.

Saguri๊ฐ€ Cisco ISE๋ฅผ ๋ถ„์„ํ•˜๋ฉด์„œ ๋„คํŠธ์›Œํฌ ์•ก์„ธ์Šค ์ œ์–ด ๊ตฌํ˜„ ๋ฐ ๋ฐฐํฌ๋ฅผ ๋‹จ์ˆœํ™”ํ•˜๊ณ , ๊ฐœ์ž…์„ ๋ณด์žฅํ•˜๊ณ  ํ—ˆ์šฉํ•˜๋ฉฐ ์†Œํ”„ํŠธ์›จ์–ด๋กœ ์ •์˜๋œ ์•ก์„ธ์Šค ๋ฐ AU-ํ† ๋ฉ”์ดํŠธ ๋„คํŠธ์›Œํฌ ์„ธ๋ถ„ํ™” ๋ฐ ๋„คํŠธ์›Œํฌ ์ƒํƒœ ๊ฐ€์‹œ์„ฑ์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค. ์ด์— ๋Œ€ํ•œ ์ •๋ณด๋Š” Cisco security advisory, NVD ๋ฐ CVE-2022-20956-๊นจ์ง„ ์•ก์„ธ์Šค ์ œ์–ด-CWE 648 CVE-20๋ฅผ ํฌํ•จํ•ฉ๋‹ˆ๋‹ค.

CVE Advisory - Partial Disclosure Cisco ISE Broken Access Control

Saguri began analyzing Cisco Identity Service Engine-3.1.0.518-Patch3-22042809, and Cisco ISE is its own network management tool that simplifies network access control and distribution with dynamic and automated security and โ€˜managementโ€™ policy.ISE guarantees and allows, and guarantees who can, which access, when and how to access it.It also provides access and AU-Tomate network segmentation and network status visibility defined by software.CVE-2022-20956-broken access control-CWE 648 CVE-20.

Saguri analyzes Cisco ISE, simplifies network access control and distribution, guarantees and allows intervention, and provides access to access and AU-Tomate networks defined as software, and provides network status visibility.Information on this includes Cisco Security Advisory, NVD and CVE-2022-20956-Broken Access Control-CWE 648 CVE-20.

https://yoroi.company/en/research/cve-advisory-partial-disclosure-cisco-ise-broken-access-control/