CVE-2017-6744: Cisco IOS software
EPSS7.2%No. 1343 of 1739 in KEV
CVE year2017~5 yrs before listing
Same vendor in KEV100
Same product6
| Field | Value |
|---|---|
| Vendor | Cisco |
| Product | IOS software |
| Name | Cisco IOS Software SNMP Remote Code Execution Vulnerability |
| Added to KEV | 2022-03-03 |
| US federal due date | 2022-03-24 |
| Ransomware use | Unknown |
| CWE | CWE-119 |
CISA description
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS 1 contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected system via IPv4 or IPv6.
Other entries for this product
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2017-12235 | Cisco IOS software | 2022-03-03 | 7.0% | Unknown |
| CVE-2017-12234 | Cisco IOS software | 2022-03-03 | 7.0% | Unknown |
| CVE-2017-12233 | Cisco IOS software | 2022-03-03 | 7.0% | Unknown |
| CVE-2017-12232 | Cisco IOS software | 2022-03-03 | 2.1% | Unknown |
| CVE-2017-12231 | Cisco IOS software | 2022-03-03 | 7.0% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Cisco IOS software vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2022-03-03.