CVE-2018-0147CISA KEVEPSS p96.9%

CVE-2018-0147Cisco Secure Access Control System Java Deserialization Vulnerability

Cisco / Secure Access Control System (ACS)

Description

A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerability is due to insecure deserialization of user-supplied content by the affected software.

Scoring

EPSS18.55% probability of exploitation · percentile 96.9% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2022-03-25

(incoming)1

TypeTargetConfidenceTier
KEVEntryCisco Secure Access Control System Java Deserialization Vulnerabilitykev-cve-2018-01470%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management Deserialization of Untrusted Data Vulnerability
CVE
Cisco RV Series Routers Deserialization of Untrusted Data Vulnerability
CVE
Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability
CVE
Cisco Adaptive Security Appliance (ASA) Denial-of-Service Vulnerability
CVE
SonicWall SMA1000 Appliances Deserialization Vulnerability
CVE
Cisco Adaptive Security Appliance (ASA) CLI Remote Code Execution Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.