Threat Level: green Handler on Duty: Brad Duncan

SANS ISC: SANS Internet Storm Center SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms:

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Cisco TACACS+ Authentication Bypass

Cisco has released a patch that addresses a TACACS+ Authentication Bypass vulnerability.    Exploitation is likely very easy.   If you are using Cisco ACS for authentication you should probably take note of this annoucment.

The following Cisco Secure ACS versions are affected by this vulnerability:

Cisco Secure ACS Version Affected
5.0 Yes
5.1 Yes
5.2 Yes
5.3 Yes
5.4 No

Thanks to the ISC reader who asked not to be mentioned by name who brought this to my attention.  And thanks to Scott for keeping me straight on the versions.

Join me in San Antonio Texas November 27th for SANS 504 Hacker Techniques, Exploits and Incident Response!  Register Today!!

Follow me on Twitter @MarkBaggett
Mark Baggett


81 Posts
ISC Handler
Nov 7th 2012

Sign Up for Free or Log In to start participating in the conversation!