9.8
CVSSv3

CVE-2016-9223

Published: 26/12/2016 Updated: 03/01/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in the Docker Engine configuration of Cisco CloudCenter Orchestrator (CCO; formerly CliQr) could allow an unauthenticated, remote malicious user to install Docker containers with high privileges on the affected system. Affected Products: This vulnerability affect all releases of Cisco CloudCenter Orchestrator (CCO) deployments where the Docker Engine TCP port 2375 is open on the system and bound to local address 0.0.0.0 (any interface).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco cloudcenter orchestrator 4.6.1

cisco cloudcenter orchestrator 4.6.0

cisco cloudcenter orchestrator 4.5.0

cisco cloudcenter orchestrator 4.4.0