CVE-2017-6694
Description
A vulnerability in the Virtual Network Function Managers (VNFM) logging function of Cisco Ultra Services Platform could allow an authenticated, local attacker to view sensitive data (cleartext credentials) on an affected system. More Information: CSCvd29355. Known Affected Releases: 21.0.v0.65839.
Risk Information
Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.057
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Cisco Ultra Services Platform Plaintext Credential Logging Information Disclosure Vulnerability For Cisco Ultra Automation Services | NCM |
| Insufficiently Protected Credentials Vulnerability (CVE-2017-6694) | NCM |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-1704605 | Security Update for Cisco Ultra Automation Services USP_6.2.A0.2906 |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234