CVE-2017-6665

MEDIUM

Cisco IOS - Unauthenticated Information Disclosure via Autonomic Networking ACP

Title source: llm
STIX 2.1

Description

A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to reset the Autonomic Control Plane (ACP) of an affected system and view ACP packets that are transferred in clear text within an affected system, an Information Disclosure Vulnerability. More Information: CSCvd51214. Known Affected Releases: Denali-16.2.1 Denali-16.3.1.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/99969
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1038998

Scores

CVSS v3 6.5
EPSS 0.0043
EPSS Percentile 34.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-319
Status published
Products (50)
cisco/ios 15.2\(3\)e
cisco/ios 15.2\(3\)e1
cisco/ios 15.2\(3\)e2
cisco/ios 15.2\(3\)e3
cisco/ios 15.2\(3\)e4
cisco/ios 15.2\(3\)e5
cisco/ios 15.2\(3a\)e
cisco/ios 15.2\(3a\)e1
cisco/ios 15.2\(3m\)e2
cisco/ios 15.2\(3m\)e3
... and 40 more
Published Aug 07, 2017
Tracked Since Feb 18, 2026