Vulnerabilities > CVE-2017-6693 - Missing Authorization vulnerability in Cisco Elastic Services Controller 2.2(9.76)/2.3(1)
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
A vulnerability in the ConfD server component of Cisco Elastic Services Controllers could allow an authenticated, local attacker to access information stored in the file system of an affected system, aka Unauthorized Directory Access. More Information: CSCvd76286. Known Affected Releases: 2.2(9.76) 2.3(1).
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |