CVE-2017-6786
published 2017-08-17CVE-2017-6786: A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including…
PriorityP428medium6.3CVSS 3.0
AVLACLPRLUINSCCLILAL
EPSS
0.30%
21.7th percentile
A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including credentials for system accounts, on an affected system. The vulnerability is due to improper protection of sensitive log files. An attacker could exploit this vulnerability by logging in to an affected system and accessing unprotected log files. A successful exploit could allow the attacker to access sensitive log files, which may include system credentials, on the affected system. Cisco Bug IDs: CSCvc76616. Known Affected Releases: 2.2(9.76).
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | elastic_services_controller | — | — |
| cisco | elastic_services_controller_sensitive_log | — | — |
| cisco_systems_inc | elastic_services_controller | — | — |
CVSS provenance
nvdv3.06.3MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.0HIGH
vendor_cisco6.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
vendor_cisco·2017-08-16·CVSS 6.3
CVE-2017-6786 [MEDIUM] CWE-200 Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including credentials for system accounts, on an affected system.
The vulnerability is due to improper protection of sensitive log files. An attacker could exploit this vulnerability by logging in to an affected system and accessing unprotected log files. A successful exploit could allow the attacker to access sensitive log files, which may include system credentials, on the affected system.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSe
Red Hat
kernel: Race condition between multiple sys_perf_event_open() calls
vendor_redhat·2017-01-14·CVSS 7.0
CVE-2017-6001 [HIGH] CWE-362 kernel: Race condition between multiple sys_perf_event_open() calls
kernel: Race condition between multiple sys_perf_event_open() calls
Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open system calls for moving a software group into a hardware context. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6786.
It was found that the original fix for CVE-2016-6786 was incomplete. There exist a race between two concurrent sys_perf_event_open() calls when both try and move the same pre-existing software group into a hardware context.
Statement: This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5 as the perf subsystem where the flaw was found is not present in this product.
Cisco
Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
vendor_cisco·CVSS 3.0
CVE-2017-6786 Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
CVE-2017-6786: Cisco Elastic Services Controller Sensitive Log Information Disclosure Vulnerability
A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including credentials for system accounts, on an affected system. The vulnerability is due to improper protection of sensitive log files. An attacker could exploit this vulnerability by logging in to an affected system and accessing unprotected log files. A successful exploit could allow the attacker to access sensitive log files, which may include system credentials, on the affected system. There are no
CVSS: 3.0
CWE: CWE-200, CWE-200
Bug IDs: CSCvc76616
GHSA
GHSA-rg82-c3xg-wvrf: A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, inclu
ghsa_unreviewed·2022-05-17
CVE-2017-6786 [MEDIUM] CWE-200 GHSA-rg82-c3xg-wvrf: A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, inclu
A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including credentials for system accounts, on an affected system. The vulnerability is due to improper protection of sensitive log files. An attacker could exploit this vulnerability by logging in to an affected system and accessing unprotected log files. A successful exploit could allow the attacker to access sensitive log files, which may include system credentials, on the affected system. Cisco Bug IDs: CSCvc76616. Known Affected Releases: 2.2(9.76).
No detection rules found.
No public exploits indexed.
2017-08-17
Published