CVE-2017-6665
MEDIUMCisco IOS - Unauthenticated Information Disclosure via Autonomic Networking ACP
Title source: llmDescription
A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to reset the Autonomic Control Plane (ACP) of an affected system and view ACP packets that are transferred in clear text within an affected system, an Information Disclosure Vulnerability. More Information: CSCvd51214. Known Affected Releases: Denali-16.2.1 Denali-16.3.1.
References (3)
Core 3
Core References
Vendor Advisory x_refsource_confirm
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170726-aniacp
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/99969
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1038998
Scores
CVSS v3
6.5
EPSS
0.0043
EPSS Percentile
34.2%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-319
Status
published
Products (50)
cisco/ios
15.2\(3\)e
cisco/ios
15.2\(3\)e1
cisco/ios
15.2\(3\)e2
cisco/ios
15.2\(3\)e3
cisco/ios
15.2\(3\)e4
cisco/ios
15.2\(3\)e5
cisco/ios
15.2\(3a\)e
cisco/ios
15.2\(3a\)e1
cisco/ios
15.2\(3m\)e2
cisco/ios
15.2\(3m\)e3
... and 40 more
Published
Aug 07, 2017
Tracked Since
Feb 18, 2026