PT-2017-17244 · Cisco · Cisco Elastic Services Controllers
Published
2017-06-13
·
Updated
2019-10-03
·
CVE-2017-6689
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco Elastic Services Controllers version 2.2(9.76)
Description
A vulnerability in the ConfD CLI could allow an authenticated, remote attacker to log in to an affected system as the admin user. This issue is related to insecure default administrator credentials.
Recommendations
For version 2.2(9.76), change the default administrator credentials to secure ones to prevent unauthorized access.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Elastic Services Controllers