CVE-2017-6697: Infoleak
A vulnerability in the web interface of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to access sensitive system credentials that are stored in an affected system. More Information: CSCvd76339. Known Affected Releases: 2.2(9.76).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6697?
The severity of CVE-2017-6697 is classified as high due to its potential to expose sensitive system credentials.
How do I fix CVE-2017-6697?
To fix CVE-2017-6697, upgrade the Cisco Elastic Services Controller to a version beyond 2.2(9.76), as patches are included in later releases.
What systems are affected by CVE-2017-6697?
CVE-2017-6697 specifically affects version 2.2(9.76) of the Cisco Elastic Services Controller.
Who can exploit CVE-2017-6697?
An authenticated, remote attacker can exploit CVE-2017-6697 to access sensitive system credentials stored on the device.
What are the potential impacts of CVE-2017-6697?
The potential impacts of CVE-2017-6697 include unauthorized access to sensitive system credentials, leading to further compromise of the system.