AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-6712

HIGH · CVSS 8.8 EPSS 2.05%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-07-06 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It affects Cisco. It may be remotely exploitable.

CVE
CVE-2017-6712
Severity
HIGH
CVSS
8.8
EPSS
2.05%
Cisco

Original NVD Description

A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run dangerous commands on the server. The vulnerability occurs because a "tomcat" user on the system can run certain shell commands, allowing the user to overwrite any file on the filesystem and elevate privileges to root. This vulnerability affects Cisco Elastic Services Controller prior to releases 2.3.1.434 and 2.3.2. Cisco Bug IDs: CSCvc76634.

Related CVEs

Other vulnerabilities affecting the same vendor(s)