Cisco Application Control Engine contains a flaw that is triggered when an error occurs during the sharing of management IP addresses among multiple contexts. This may allow a remote attacker to bypass restrictions, which may potentially allow the attacker to read or modify configuration settings.
Upgrade to version A4(2.3) or A5(1.1) or higher, as they have been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.