CVE-2013-1177: Cisco Network Admission Control Manager And Server System Software

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

SQL injection vulnerability in Cisco Network Admission Control (NAC) Manager before 4.8.3.1 and 4.9.x before 4.9.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCub23095.

Affected products

  • Cisco Network Admission Control Manager And Server System Software: up to and including 4.8.3; version 4.8.0 only; version 4.8.1 only; version 4.8.2 only; version 4.9.0 only; version 4.9.1 only

Published 2013-04-18. Last modified 2026-06-16.