CVE-2017-6751
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the web proxy functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to forward traffic from the web proxy interface of an affected device to the administrative management interface of an affected device, aka an Access Control Bypass Vulnerability. Affected Products: virtual and hardware versions of Cisco Web Security Appliance (WSA). More Information: CSCvd88863. Known Affected Releases: 10.1.0-204 9.0.0-485.
Una vulnerabilidad en la funcionalidad proxy web de Cisco Web Security Appearance (WSA) podría permitir que un atacante remoto no autenticado redirija tráfico de la interfaz proxy web de un dispositivo afectado a una interfaz de administración de un dispositivo afectado. Esta vulnerabilidad también se conoce como "Access Control Bypass Vulnerability". Productos afectados: versiones de hardware y virtuales de Cisco Web Security Appliance (WSA). Más información: CSCvd88863. Versiones afectadas conocidas: 10.1.0-204 9.0.0-485.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-03-09 CVE Reserved
- 2017-07-25 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/99967 | Third Party Advisory | |
http://www.securitytracker.com/id/1038959 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170719-wsa5 | 2021-04-05 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 9.0.0-162 Search vendor "Cisco" for product "Web Security Appliance" and version "9.0.0-162" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 9.0.0-193 Search vendor "Cisco" for product "Web Security Appliance" and version "9.0.0-193" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 9.0.0-485 Search vendor "Cisco" for product "Web Security Appliance" and version "9.0.0-485" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 10.0.0-232 Search vendor "Cisco" for product "Web Security Appliance" and version "10.0.0-232" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 10.0.0-233 Search vendor "Cisco" for product "Web Security Appliance" and version "10.0.0-233" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Appliance Search vendor "Cisco" for product "Web Security Appliance" | 10.1.0-204 Search vendor "Cisco" for product "Web Security Appliance" and version "10.1.0-204" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Virtual Appliance Search vendor "Cisco" for product "Web Security Virtual Appliance" | 9.0.0 Search vendor "Cisco" for product "Web Security Virtual Appliance" and version "9.0.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Virtual Appliance Search vendor "Cisco" for product "Web Security Virtual Appliance" | 10.0.0 Search vendor "Cisco" for product "Web Security Virtual Appliance" and version "10.0.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Virtual Appliance Search vendor "Cisco" for product "Web Security Virtual Appliance" | 10.1.0 Search vendor "Cisco" for product "Web Security Virtual Appliance" and version "10.1.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Web Security Virtual Appliance Search vendor "Cisco" for product "Web Security Virtual Appliance" | 10.1.1 Search vendor "Cisco" for product "Web Security Virtual Appliance" and version "10.1.1" | - |
Affected
|