CVE-2017-3871

A RADIUS Secret Disclosure vulnerability in the web network management interface of Cisco Prime Optical for Service Providers could allow an authenticated, remote attacker to disclose sensitive information in the configuration generated for a device. The attacker must have valid credentials for the device. More Information: CSCvc65257. Known Affected Releases: 10.6(0.1).
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:prime_optical:10.6\(0.1\):*:*:*:*:*:*:*

History

21 Nov 2024, 03:26

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/96928 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/96928 - Third Party Advisory, VDB Entry
References () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-cpo - Vendor Advisory () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-cpo - Vendor Advisory

Information

Published : 2017-03-17 22:59

Updated : 2024-11-21 03:26


NVD link : CVE-2017-3871

Mitre link : CVE-2017-3871

CVE.ORG link : CVE-2017-3871


JSON object : View

Products Affected

cisco

  • prime_optical
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor