CVE-2017-6739 — Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
CVE-2017-6739: Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability
CISA Known Exploited Vulnerability (KEV)
| Vendor / project | Cisco |
| Product | IOS and IOS XE Software |
| Date added | 2022-03-03 |
| Due date | 2022-03-24 |
| Ransomware campaign use | Unknown |
Description
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload.
Required action (CISA)
Apply updates per vendor instructions.
Notes
https://nvd.nist.gov/vuln/detail/CVE-2017-6739
References
- NVD: https://nvd.nist.gov/vuln/detail/CVE-2017-6739
- KEV catalog: https://www.cisa.gov/known-exploited-vulnerabilities-catalog