CVE-2017-6685

HIGH

Cisco Ultra Services Framework Staging Server - Privilege Escalation

Title source: llm
STIX 2.1

Description

A vulnerability in Cisco Ultra Services Framework Staging Server could allow an authenticated, remote attacker with access to the management network to log in as an admin user of the affected device, aka an Insecure Default Credentials Vulnerability. More Information: CSCvc76681. Known Affected Releases: 21.0.0.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/98990

Scores

CVSS v3 8.8
EPSS 0.0150
EPSS Percentile 70.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-1188
Status published
Products (2)
cisco/ultra_services_framework_staging_server 21.0.0
n/a/Cisco Ultra Services Framework Staging Server Cisco Ultra Services Framework Staging Server
Published Jun 13, 2017
Tracked Since Feb 18, 2026