CVE-2017-6793
MEDIUMCisco Prime Collaboration Provisioning Tool - Info Disclosure
Title source: llmDescription
A vulnerability in the Inventory Management feature of Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to view sensitive information on the system. The vulnerability is due to insufficient protection of restricted information. An attacker could exploit this vulnerability by accessing unauthorized information via the user interface. Cisco Bug IDs: CSCvd61932.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170906-pcpt1
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1039280
Scores
CVSS v3
6.5
EPSS
0.0120
EPSS Percentile
64.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (2)
cisco/prime_collaboration_provisioning
n/a/Cisco Prime Collaboration Provisioning Tool
Cisco Prime Collaboration Provisioning Tool
Published
Sep 07, 2017
Tracked Since
Feb 18, 2026