SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2017-12243

A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to obtain root shell privileges on…

HIGH 7.8EPSS 77.1%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 77.1%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.

Description

A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to obtain root shell privileges on the device, aka Command Injection. The vulnerability is due to improper validation of string input in the shell application. An attacker could exploit this vulnerability through the use of malicious commands. A successful exploit could allow the attacker to obtain root shell privileges on the device. Cisco Bug IDs: CSCvf20741, CSCvf60078.

CVSS 3.0
7.8 HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
77.07% probability · 100th percentile
CISA KEV
Not listed
Weakness
CWE-78
Affected
cisco/unified computing system manager firmware · cisco/firepower 9300 security appliance firmware · cisco/firepower 4100 next-generation firewall firmware
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.