CVE-2015-4282: Cisco Mobility Services Engine

Medium severity, CVSS 6.9. EPSS: 0.4% chance of exploitation in the next 30 days.

Cisco Mobility Services Engine (MSE) through 8.0.120.7 uses weak permissions for unspecified binary files, which allows local users to obtain root privileges by writing to a file, aka Bug ID CSCuv40504.

Affected products

  • Cisco Mobility Services Engine: version 5.1_base only; version 5.2_base only; version 6.0_base only; version 7.0_base only; version 7.4.100.0 only; version 7.4.110.0 only; …

Published 2015-11-06. Last modified 2026-06-17.