PT-2017-17227 · Cisco · Cisco Ios+1

CVE-2017-6665

·

Publicado

2017-07-26

·

Atualizado

2024-03-04

CVSS v3.1

6.5

Média

VetorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco IOS Software and Cisco IOS XE Software versions Denali-16.2.1 through Denali-16.3.1
Description A vulnerability in the Autonomic Networking feature could allow an unauthenticated, adjacent attacker to reset the Autonomic Control Plane (ACP) of an affected system and view ACP packets that are transferred in clear text within an affected system. The vulnerability is due to unknown reasons. An attacker could exploit this vulnerability by capturing and replaying ACP packets that are transferred within an affected system. A successful exploit could allow the attacker to reset the ACP of an affected system, resulting in a denial of service (DoS) condition. A successful exploit could also allow the attacker to capture and view ACP packets, which should have been encrypted over the ACP, in clear text.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Cleartext Transmission of Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-6665

Produtos afetados

Cisco Ios
Cisco Ios Xe