CVE-2017-6735

Severity
6.7MEDIUM
EPSS
0.1%
top 75.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 10
Latest updateMay 17

Description

A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arbitrary code on a targeted system. More Information: CSCvc91092. Known Affected Releases: 6.2.0 6.2.1.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5cisco_firesight_system_softwareCisco FireSIGHT System Software

🔴Vulnerability Details

2
GHSA
GHSA-p32p-qr9r-gpmg: A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arb2022-05-17
CVEList
CVE-2017-6735: A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arb2017-07-10

📋Vendor Advisories

1
Cisco
Cisco FireSIGHT System Software Arbitrary Code Execution Vulnerability2017-07-05