← Back

CVE-2017-6751

nvd nist
Published: Jul 25, 2017Modified: May 13, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A vulnerability in the web proxy functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to forward traffic from the web proxy interface of an affected device to the administrative management interface of an affected device, aka an Access Control Bypass Vulnerability. Affected Products: virtual and hardware versions of Cisco Web Security Appliance (WSA). More Information: CSCvd88863. Known Affected Releases: 10.1.0-204 9.0.0-485.

Affected (10)

2 products
Web Security Appliance
Web Security Virtual Appliance
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 10.0.0-232
Version 10.0.0-233
Version 10.1.0-204
Version 9.0.0-162
Version 9.0.0-193
Version 9.0.0-485
Cisco
Version 10.0.0
Version 10.1.0
Version 10.1.1
Version 9.0.0

References (6)

Source: psirt@cisco.com
Third Party AdvisoryVDB Entry
Source: psirt@cisco.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.