PT-2017-17250 · Cisco · Cisco Elastic Services Controller

Published

2017-06-13

·

Updated

2017-06-20

·

CVE-2017-6696

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco Elastic Services Controllers version 2.3(2)
Description A vulnerability in the file system could allow an authenticated, local attacker to gain access to sensitive user credentials stored in the system.
Recommendations For version 2.3(2), at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-6696

Affected Products

Cisco Elastic Services Controller