CVE-2014-8017: Cisco Identity Services Engine Software

Medium severity, CVSS 5.0. EPSS: 1.2% chance of exploitation in the next 30 days.

The periodic-backup feature in Cisco Identity Services Engine (ISE) allows remote attackers to discover backup-encryption passwords via a crafted request that triggers inclusion of a password in a reply, aka Bug ID CSCur41673.

Affected products

  • Cisco Identity Services Engine Software: affected versions not specified

Published 2014-12-22. Last modified 2026-06-17.