Lucene search

K
cveCiscoCVE-2017-6735
HistoryJul 10, 2017 - 8:29 p.m.

CVE-2017-6735

2017-07-1020:29:00
CWE-20
cisco
web.nvd.nist.gov
34
cisco
firesight
system software
vulnerability
backup
restore
code execution
authenticated
local attacker
nvd
cscvc91092

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

6.7

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.7

Confidence

High

EPSS

0

Percentile

5.1%

A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arbitrary code on a targeted system. More Information: CSCvc91092. Known Affected Releases: 6.2.0 6.2.1.

Affected configurations

Nvd
Node
ciscofiresight_system_softwareMatch6.2.0
OR
ciscofiresight_system_softwareMatch6.2.1
VendorProductVersionCPE
ciscofiresight_system_software6.2.0cpe:2.3:a:cisco:firesight_system_software:6.2.0:*:*:*:*:*:*:*
ciscofiresight_system_software6.2.1cpe:2.3:a:cisco:firesight_system_software:6.2.1:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Cisco FireSIGHT System Software",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Cisco FireSIGHT System Software"
      }
    ]
  }
]

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

6.7

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.7

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2017-6735