ID

VAR-201703-0892


CVE

CVE-2017-3881


TITLE

Cisco IOS and Cisco IOS XE of Cisco Cluster Management Protocol Input code vulnerability in processing code

Trust: 0.8

sources: JVNDB: JVNDB-2017-002736

DESCRIPTION

A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges. The Cluster Management Protocol utilizes Telnet internally as a signaling and command protocol between cluster members. The vulnerability is due to the combination of two factors: (1) the failure to restrict the use of CMP-specific Telnet options only to internal, local communications between cluster members and instead accept and process such options over any Telnet connection to an affected device; and (2) the incorrect processing of malformed CMP-specific Telnet options. An attacker could exploit this vulnerability by sending malformed CMP-specific Telnet options while establishing a Telnet session with an affected Cisco device configured to accept Telnet connections. An exploit could allow an attacker to execute arbitrary code and obtain full control of the device or cause a reload of the affected device. This affects Catalyst switches, Embedded Service 2020 switches, Enhanced Layer 2 EtherSwitch Service Module, Enhanced Layer 2/3 EtherSwitch Service Module, Gigabit Ethernet Switch Module (CGESM) for HP, IE Industrial Ethernet switches, ME 4924-10GE switch, RF Gateway 10, and SM-X Layer 2/3 EtherSwitch Service Module. Cisco Bug IDs: CSCvd48893. Vendors have confirmed this vulnerability Bug ID CSCvd48893 It is released as.Information is obtained, information is altered, and service operation is disrupted (DoS) An attack may be carried out. Multiple Rockwell Automation products are prone to a remote code-execution vulnerability. Successful exploits will result in the execution of arbitrary code with elevated privileges. Failed exploit attempts may result in a denial-of-service condition. The following products are vulnerable: Allen-Bradley Stratix 5400 Industrial Ethernet Switches versions 15.2(5)EA.fc4 and prior. Allen-Bradley Stratix 5410 Industrial Distribution Switches versions 15.2(5)EA.fc4 and prior. Allen-Bradley Stratix 5700 Industrial Managed Ethernet Switches versions 15.2(5)EA.fc4 and prior. Allen-Bradley ArmorStratix 5700 Industrial Managed Ethernet Switches versions 15.2(5)EA.fc4 and prior. Allen-Bradley Stratix 8300 Modular Managed Industrial Ethernet Switches versions 15.2(4a)EA5 and prior. Cisco Catalyst Switches are all switch products of Cisco (Cisco). Cisco will release software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170317-cmp ["https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170317-cmp"] -----BEGIN PGP SIGNATURE----- iQKBBAEBAgBrBQJYzAjfZBxDaXNjbyBTeXN0ZW1zIFByb2R1Y3QgU2VjdXJpdHkg SW5jaWRlbnQgUmVzcG9uc2UgVGVhbSAoQ2lzY28gUFNJUlQga2V5IDIwMTYtMjAx NykgPHBzaXJ0QGNpc2NvLmNvbT4ACgkQrz2APcQAkHm3jRAAzLR1b6oQbXCkv0yQ GpiGyo0l97V74L+99IvzJzibQrNr/7oFNVc0Sm0SWtGJwhBdIFWKKp7tpfxLFUYw QpgpmOQHfu70kajINv5hshpKReIT2lnUhmAiK0VQzxp8QY/3WboSTjEYLOTmFHHh xb3dNWmvGYiT9tuSvQ70AkMnl2EfU+P+pkucjcku4Vi5Jri7BIIIPjz1by16Juh+ tIB5elmrFOFF/WGRERLo/a3anNlnoszoJxu+m57uS8CYICTnqJKeDEinpm64j0IB 7dWi1qqDTx9973zsmcqUZqeY9kSwierDJW5cii49GrOFOHUeJ9eWCOogEnE1+U4G iz7cJHsQ4qqBF39PBTMlxtY6xjhgGJDkRf3dzJBONH9EfoTpQOFMlO9220/2wlMe SquIU+SY31pW/xHcRfD8NoALZQ5EqrOkbbRXPGe/LwSUcXiFSBL0iMaE/jOPIRRs q6c7lbQr2kay0hTUMovhCvkVUlIC4eJAjwES3vau0EynKlumoYUb2Z7kSAq9QRqU vjHX1Iq+wrh+pM/+GFpx12yJzaDtIrBQSNtB/Jf8p0kNqlja/4Z90DDtwTCTaalR 7hGFyGWo3X3dPBxEL4OcASAaf2uC/J0ozprd0xCS8rsiMfn3rBYWtE6taK88njda 6UdaqFK+zmUBK8rQV0Lu6mOFpOo= =Ql/1 -----END PGP SIGNATURE-----

Trust: 2.43

sources: NVD: CVE-2017-3881 // JVNDB: JVNDB-2017-002736 // BID: 96960 // BID: 97391 // VULHUB: VHN-112084 // VULMON: CVE-2017-3881 // PACKETSTORM: 141687

AFFECTED PRODUCTS

vendor:ciscomodel:ios xescope:lteversion:3.9e

Trust: 1.0

vendor:ciscomodel:iosscope:lteversion:15.1\(3\)svs

Trust: 1.0

vendor:ciscomodel:iosscope:gteversion:12.2s

Trust: 1.0

vendor:ciscomodel:ios xescope:gteversion:3.2sg

Trust: 1.0

vendor:ciscomodel:iosscope: - version: -

Trust: 0.8

vendor:ciscomodel:ios xescope: - version: -

Trust: 0.8

vendor:rockwellmodel:automation allen-bradley stratix modular managed industrial ethernet s 15.2 ea.fc4scope:eqversion:8000

Trust: 0.6

vendor:rockwellmodel:automation allen-bradley stratix industrial managed ethernet switches 15.2 ea.fc4scope:eqversion:5700

Trust: 0.6

vendor:rockwellmodel:automation allen-bradley stratix industrial distribution switches 15.2 ea.fc4scope:eqversion:5410

Trust: 0.6

vendor:rockwellmodel:automation allen-bradley stratix industrial ethernet switches 15.2 ea.fc4scope:eqversion:5400

Trust: 0.6

vendor:rockwellmodel:automation allen-bradley armorstratix industrial managed ethernet swit 15.2 ea.fc4scope:eqversion:5700

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd2

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd3

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.2\(4\)ec1

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.2\(4\)ec

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion: -

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd5

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd4

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.2\(4\)ec2

Trust: 0.6

vendor:ciscomodel:iosscope:eqversion:15.0\(2\)sqd1

Trust: 0.6

vendor:ciscomodel:sm-x layer etherswitch service modulescope:eqversion:2/30

Trust: 0.3

vendor:ciscomodel:rf gatewayscope:eqversion:100

Trust: 0.3

vendor:ciscomodel:me 4924-10ge switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ios xe 15.0 se10scope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 15.0 se10scope: - version: -

Trust: 0.3

vendor:ciscomodel:ie-5000-16s12p industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-5000-12s12p-10g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4010-4s24p industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4010-16s12p industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-8t4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-8s4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-8gt8gp4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-8gt4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-8gs4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-4tc4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-4t4p4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-4s8p4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-4gs8gp4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-4gc4gp4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-16t4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-4000-16gt4g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-3010-24tc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie-3010-16s-8pc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 3000-8tc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 3000-4tc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8tc-g-n industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8tc-g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8tc-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8tc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8t67p industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-8t67 industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-4ts-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-4ts industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-4t-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-4t industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-4s-ts-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-24t67 industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16tc-g-x industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16tc-g-n industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16tc-g-e industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16tc-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16tc industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16t67p industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16t67 industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ie 2000-16ptc-g industrial ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:gigabit ethernet switch module for hpscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:enhanced layer etherswitch service modulescope:eqversion:2/30

Trust: 0.3

vendor:ciscomodel:enhanced layer etherswitch service modulescope:eqversion:20

Trust: 0.3

vendor:ciscomodel:embedded service ncp switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service ncp b switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service con switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service con b switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service 24tc ncp switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service 24tc ncp b switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service 24tc con switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:embedded service 24tc con b switchscope:eqversion:20200

Trust: 0.3

vendor:ciscomodel:catalyst switch module for ibm bladecenterscope:eqversion:3110x0

Trust: 0.3

vendor:ciscomodel:catalyst switch module for ibm bladecenterscope:eqversion:31100

Trust: 0.3

vendor:ciscomodel:catalyst switch module for ibm bladecenterscope:eqversion:30120

Trust: 0.3

vendor:ciscomodel:catalyst c2928-48tc-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst c2928-24lt-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for dell m1000escope:eqversion:31300

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for hpscope:eqversion:3120x0

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for hpscope:eqversion:31200

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for fscscope:eqversion:30400

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for dell m1000escope:eqversion:30320

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for dellscope:eqversion:30300

Trust: 0.3

vendor:ciscomodel:catalyst blade switch for hpscope:eqversion:30200

Trust: 0.3

vendor:ciscomodel:catalyst 4948e-f ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 4948e ethernet switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst switchscope:eqversion:49480

Trust: 0.3

vendor:ciscomodel:catalyst gigabit ethernet switchscope:eqversion:4948100

Trust: 0.3

vendor:ciscomodel:catalyst gigabit ethernet switchscope:eqversion:4928100

Trust: 0.3

vendor:ciscomodel:catalyst 4900m switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst supervisor engine 6l-escope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst supervisor engine 6-escope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst series supervisor ii-plus-10gescope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst series supervisor engine v-10gescope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst series supervisor engine ii-plus-tsscope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst series supervisor engine ii-plusscope:eqversion:45000

Trust: 0.3

vendor:ciscomodel:catalyst supervisor enginescope:eqversion:4000/4500v0

Trust: 0.3

vendor:ciscomodel:catalyst supervisor engine ivscope:eqversion:4000/45000

Trust: 0.3

vendor:ciscomodel:catalyst supervisor engine iscope:eqversion:40000

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48u-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48u-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48u-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48t-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48t-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48t-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48pf-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48pf-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48pf-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48p-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48p-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-48p-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24u-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24u-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24u-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24t-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24t-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24t-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24s-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24s-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24p-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24p-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-24p-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-12s-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750x-12s-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750v2-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750v2-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750v2-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750v2-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750v2-24fs switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-24ts-1u switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-24t switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-16td switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-12s-sd switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750g-12s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48td-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48pd-sf switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48pd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48pd-ef switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-48pd-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-24td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-24td-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-24pd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750e-24pd-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3750-24fs switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst metro 24-dc switchscope:eqversion:37500

Trust: 0.3

vendor:ciscomodel:catalyst metro 24-ac switchscope:eqversion:37500

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48u-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48u-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48u-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48t-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48t-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48t-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48pf-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48pf-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48pf-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48p-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48p-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-48p-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24u-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24u-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24u-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24t-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24t-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24t-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24p-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24p-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560x-24p-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560v2-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560v2-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560v2-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560v2-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560v2-24dc switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560g-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560g-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560g-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560g-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48td-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48pd-sf switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48pd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48pd-ef switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-48pd-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-24td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-24td-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-24pd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-24pd-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-12sd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-12sd-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-12d-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560e-12d-e switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-8xpd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-8tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-8pt-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-8pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-12tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-12pd-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cx-12pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cpd-8pt-s compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cg-8tc-s compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560cg-8pc-s compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560c-8pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560c-12pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-8pc compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-48ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-48ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-24ps switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 3560-12pc-s compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst smi switchscope:eqversion:3550480

Trust: 0.3

vendor:ciscomodel:catalyst emi switchscope:eqversion:3550480

Trust: 0.3

vendor:ciscomodel:catalyst smi switchscope:eqversion:3550240

Trust: 0.3

vendor:ciscomodel:catalyst pwr switchscope:eqversion:3550240

Trust: 0.3

vendor:ciscomodel:catalyst fx smi switchscope:eqversion:3550240

Trust: 0.3

vendor:ciscomodel:catalyst emi switchscope:eqversion:3550240

Trust: 0.3

vendor:ciscomodel:catalyst dc smi switchscope:eqversion:3550240

Trust: 0.3

vendor:ciscomodel:catalyst 12t switchscope:eqversion:35500

Trust: 0.3

vendor:ciscomodel:catalyst 12g switchscope:eqversion:35500

Trust: 0.3

vendor:ciscomodel:catalyst switchscope:eqversion:29750

Trust: 0.3

vendor:ciscomodel:catalyst 2970g-24ts switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2970g-24t switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48ts-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48td-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48lps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48lps-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48lpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48lpd-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48fps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48fps-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48fpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-48fpd-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24ts-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24td-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24ps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24ps-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24pd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960xr-24pd-i switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48lps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48lpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48fps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-48fpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24psq-l cool switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24ps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960x-24pd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f48ts-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f48ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f48lps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f48fps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f24ts-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f24ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-f24ps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48ts-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48lps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48lpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48fps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-48fpd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-24ts-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-24ts-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-24td-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-24ps-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960s-24pd-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960pd-8tt-l compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-8ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-8ps-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-48ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-48ps-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-24ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-24ps-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-16ts-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960l-16ps-ll switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960g-8tc-l compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960g-48tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960g-24tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960cx-8tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960cx-8pc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960cpd-8tt-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960cpd-8pt-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960cg-8tc-l compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960c-8tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960c-8tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960c-8pc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960c-12pc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 48tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 48tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 48pst-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 48pst-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24pc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24lc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-plus 24lc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-8tc-s compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-8tc-l compact switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48tt-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48tt-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48pst-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-48pst-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24tt-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24tc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24tc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24pc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24pc-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24lt-l switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24lc-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2960-24-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2928-24tc-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2918-48tt-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2918-48tc-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2918-24tt-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2918-24tc-c switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2360-48td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2350-48td-sd switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:catalyst 2350-48td-s switchscope:eqversion:0

Trust: 0.3

vendor:ciscomodel:ios xe 15.2 e2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 15.2 e2scope:neversion: -

Trust: 0.3

sources: BID: 96960 // BID: 97391 // JVNDB: JVNDB-2017-002736 // CNNVD: CNNVD-201703-840 // NVD: CVE-2017-3881

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-3881
value: CRITICAL

Trust: 1.0

NVD: CVE-2017-3881
value: CRITICAL

Trust: 0.8

CNNVD: CNNVD-201703-840
value: CRITICAL

Trust: 0.6

VULHUB: VHN-112084
value: HIGH

Trust: 0.1

VULMON: CVE-2017-3881
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2017-3881
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

VULHUB: VHN-112084
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2017-3881
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2017-3881
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-112084 // VULMON: CVE-2017-3881 // JVNDB: JVNDB-2017-002736 // CNNVD: CNNVD-201703-840 // NVD: CVE-2017-3881

PROBLEMTYPE DATA

problemtype:CWE-20

Trust: 1.9

sources: VULHUB: VHN-112084 // JVNDB: JVNDB-2017-002736 // NVD: CVE-2017-3881

THREAT TYPE

network

Trust: 0.6

sources: BID: 96960 // BID: 97391

TYPE

Input Validation Error

Trust: 0.9

sources: BID: 97391 // CNNVD: CNNVD-201703-840

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-002736

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-112084 // VULMON: CVE-2017-3881

PATCH

title:cisco-sa-20170317-cmpurl:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170317-cmp

Trust: 0.8

title:Multiple Cisco product IOS and IOS XE Software Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=68634

Trust: 0.6

title:Cisco: Cisco IOS and IOS XE Software Cluster Management Protocol Remote Code Execution Vulnerabilityurl:https://vulmon.com/vendoradvisory?qidtp=cisco_security_advisories_and_alerts_ciscoproducts&qid=cisco-sa-20170317-cmp

Trust: 0.1

title:easy_linux_pwnurl:https://github.com/Phantomn/easy_linux_pwn

Trust: 0.1

title:easy-linux-pwnurl:https://github.com/xairy/easy-linux-pwn

Trust: 0.1

title:CVE-2017-3881url:https://github.com/1337g/CVE-2017-3881

Trust: 0.1

title:CVE-2017-3881-Ciscourl:https://github.com/homjxi0e/CVE-2017-3881-Cisco

Trust: 0.1

title:PoC-CVE-2017-3881url:https://github.com/zakybstrd21215/PoC-CVE-2017-3881

Trust: 0.1

title:kenzer-templatesurl:https://github.com/Elsfa7-110/kenzer-templates

Trust: 0.1

title:kenzer-templatesurl:https://github.com/ARPSyndicate/kenzer-templates

Trust: 0.1

title:Exp101tsArchiv30thersurl:https://github.com/nu11secur1ty/Exp101tsArchiv30thers

Trust: 0.1

title:awesome-cve-poc_qazbnm456url:https://github.com/xbl3/awesome-cve-poc_qazbnm456

Trust: 0.1

title:PoC-in-GitHuburl:https://github.com/nomi-sec/PoC-in-GitHub

Trust: 0.1

title:Threatposturl:https://threatpost.com/cisco-patch-asr-9000-routers/143895/

Trust: 0.1

title:The Registerurl:https://www.theregister.co.uk/2019/04/17/sea_turtle_dns/

Trust: 0.1

title:Threatposturl:https://threatpost.com/cisco-patches-ios-xe-vulnerability-leaked-in-vault-7-dump/125568/

Trust: 0.1

title:The Registerurl:https://www.theregister.co.uk/2017/05/09/cisco_switches_patch_telnet_command/

Trust: 0.1

title:Threatposturl:https://threatpost.com/cisco-warns-of-critical-vulnerability-revealed-in-vault-7-data-dump/124414/

Trust: 0.1

title:BleepingComputerurl:https://www.bleepingcomputer.com/news/security/ciscos-investigation-into-vault-7-leak-uncovers-0-day-affecting-318-products/

Trust: 0.1

sources: VULMON: CVE-2017-3881 // JVNDB: JVNDB-2017-002736 // CNNVD: CNNVD-201703-840

EXTERNAL IDS

db:NVDid:CVE-2017-3881

Trust: 3.0

db:BIDid:96960

Trust: 2.1

db:BIDid:97391

Trust: 2.1

db:EXPLOIT-DBid:41872

Trust: 1.8

db:EXPLOIT-DBid:41874

Trust: 1.8

db:SECTRACKid:1038059

Trust: 1.8

db:ICS CERTid:ICSA-17-094-03

Trust: 1.5

db:JVNDBid:JVNDB-2017-002736

Trust: 0.8

db:CNNVDid:CNNVD-201703-840

Trust: 0.7

db:EXPLOIT-DBid:42122

Trust: 0.2

db:PACKETSTORMid:141687

Trust: 0.2

db:PACKETSTORMid:142132

Trust: 0.1

db:PACKETSTORMid:142121

Trust: 0.1

db:SEEBUGid:SSVID-92932

Trust: 0.1

db:VULHUBid:VHN-112084

Trust: 0.1

db:VULMONid:CVE-2017-3881

Trust: 0.1

sources: VULHUB: VHN-112084 // VULMON: CVE-2017-3881 // BID: 96960 // BID: 97391 // JVNDB: JVNDB-2017-002736 // PACKETSTORM: 141687 // CNNVD: CNNVD-201703-840 // NVD: CVE-2017-3881

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20170317-cmp

Trust: 2.9

url:http://www.securityfocus.com/bid/96960

Trust: 1.8

url:http://www.securityfocus.com/bid/97391

Trust: 1.8

url:https://www.exploit-db.com/exploits/41872/

Trust: 1.8

url:https://www.exploit-db.com/exploits/41874/

Trust: 1.8

url:http://www.securitytracker.com/id/1038059

Trust: 1.8

url:https://ics-cert.us-cert.gov/advisories/icsa-17-094-03

Trust: 1.5

url:https://nvd.nist.gov/vuln/detail/cve-2017-3881

Trust: 0.9

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-3881

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

url:http://www.rockwellautomation.com/

Trust: 0.3

url:https://cwe.mitre.org/data/definitions/20.html

Trust: 0.1

url:https://github.com/phantomn/easy_linux_pwn

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.exploit-db.com/exploits/42122/

Trust: 0.1

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20170317-cmp"]

Trust: 0.1

sources: VULHUB: VHN-112084 // VULMON: CVE-2017-3881 // BID: 96960 // BID: 97391 // JVNDB: JVNDB-2017-002736 // PACKETSTORM: 141687 // CNNVD: CNNVD-201703-840 // NVD: CVE-2017-3881

CREDITS

The vendor reported this issue.

Trust: 0.6

sources: BID: 96960 // BID: 97391

SOURCES

db:VULHUBid:VHN-112084
db:VULMONid:CVE-2017-3881
db:BIDid:96960
db:BIDid:97391
db:JVNDBid:JVNDB-2017-002736
db:PACKETSTORMid:141687
db:CNNVDid:CNNVD-201703-840
db:NVDid:CVE-2017-3881

LAST UPDATE DATE

2024-11-23T22:56:15.134000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-112084date:2020-08-07T00:00:00
db:VULMONid:CVE-2017-3881date:2020-08-07T00:00:00
db:BIDid:96960date:2017-06-05T18:01:00
db:BIDid:97391date:2017-05-23T16:23:00
db:JVNDBid:JVNDB-2017-002736date:2017-04-26T00:00:00
db:CNNVDid:CNNVD-201703-840date:2020-08-10T00:00:00
db:NVDid:CVE-2017-3881date:2024-11-21T03:26:18.337

SOURCES RELEASE DATE

db:VULHUBid:VHN-112084date:2017-03-17T00:00:00
db:VULMONid:CVE-2017-3881date:2017-03-17T00:00:00
db:BIDid:96960date:2017-03-17T00:00:00
db:BIDid:97391date:2017-04-04T00:00:00
db:JVNDBid:JVNDB-2017-002736date:2017-04-26T00:00:00
db:PACKETSTORMid:141687date:2017-03-17T10:10:00
db:CNNVDid:CNNVD-201703-840date:2017-03-23T00:00:00
db:NVDid:CVE-2017-3881date:2017-03-17T22:59:00.640