CVE-2017-6703

Severity
5.9MEDIUM
EPSS
1.0%
top 23.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 4
Latest updateMay 17

Description

A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:L/A:NExploitability: 1.6 | Impact: 4.2

Affected Packages2 packages

CVEListV5cisco_prime_collaboration_provisioning_toolCisco Prime Collaboration Provisioning Tool

🔴Vulnerability Details

2
GHSA
GHSA-vvf3-5gqj-wp29: A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack an2022-05-17
CVEList
CVE-2017-6703: A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack an2017-07-04

📋Vendor Advisories

1
Cisco
Cisco Prime Collaboration Provisioning Tool Session Hijacking Vulnerability2017-06-21
CVE-2017-6703 (MEDIUM CVSS 5.9) | A vulnerability in the web applicat | cvebase.io