Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
BID:100362
CVE-2017-6710 |Info
Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
| Bugtraq ID: | 100362 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-6710 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 16 2017 12:00AM |
| Updated: | Aug 16 2017 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco VNF Element Manager 5.1.3 Cisco VNF Element Manager 5.0.3 |
| Not Vulnerable: |
Cisco VNF Element Manager 5.1.4 Cisco VNF Element Manager 5.0.4 |
Discussion
Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
Cisco Virtual Network Function Element Manager is prone to a remote command-execution vulnerability.
An attacker can exploit this issue to execute arbitrary commands on the affected system with root privileges. This may aid in further attacks.
Versions prior to Cisco VNF Element Manager 5.0.4 and 5.1.4 are vulnerable.
This issue being tracked by Cisco Bug ID CSCvc76670.
Cisco Virtual Network Function Element Manager is prone to a remote command-execution vulnerability.
An attacker can exploit this issue to execute arbitrary commands on the affected system with root privileges. This may aid in further attacks.
Versions prior to Cisco VNF Element Manager 5.0.4 and 5.1.4 are vulnerable.
This issue being tracked by Cisco Bug ID CSCvc76670.
Exploit / POC
Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco Virtual Network Function Element Manager CVE-2017-6710 Remote Command Execution Vulnerability
References:
References: