CVE-2017-6696: Infoleak
A vulnerability in the file system of Cisco Elastic Services Controllers could allow an authenticated, local attacker to gain access to sensitive user credentials that are stored in an affected system. More Information: CSCvd73677. Known Affected Releases: 2.3(2).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6696?
CVE-2017-6696 has a high severity rating due to the potential for sensitive user credentials to be accessed by an authenticated local attacker.
How do I fix CVE-2017-6696?
To fix CVE-2017-6696, upgrade to a version of Cisco Elastic Services Controller that is not affected by this vulnerability.
What systems are affected by CVE-2017-6696?
CVE-2017-6696 specifically affects Cisco Elastic Services Controller version 2.3(2).
Who can exploit CVE-2017-6696?
CVE-2017-6696 can be exploited by an authenticated local attacker who has access to the system.
What type of information can be exposed due to CVE-2017-6696?
CVE-2017-6696 may expose sensitive user credentials stored in the affected system.