CVE-2019-1848 is a critical vulnerability in Cisco Digital Network Architecture (DNA) Center that allows an unauthenticated, adjacent attacker to bypass authentication and access internal services. This is due to insufficient access restrictions on ports essential for system operation. With a CVSS score of 9.3, this vulnerability has a high impact on confidentiality and integrity, as an attacker could connect an unauthorized device to the cluster services subnet to reach unhardened internal services. There is currently no public exploit code available, nor is there evidence of active exploitation or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 1.3CPE matchmatch criteria | cpe:2.3:a:cisco:digital_network_architecture_center:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 1.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.