Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2017-3839

An XML External Entity vulnerability in the web-based user interface of the Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to have read access to part of the information stored in the affected system. More Information: CSCvc04845. Known Affected Releases: 5.8(2.5).

SeverityMEDIUM
CVSS4.3
CWECWE-611
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Secure Access Control System (ACS) cisco-sa-20170215-acs1 Cisco OpenVuln