9
CVSSv2

CVE-2017-6737

Published: 17/07/2017 Updated: 09/10/2019
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS 12.0 up to and including 12.4 and 15.0 up to and including 15.6 and IOS XE 2.2 up to and including 3.17 contains multiple vulnerabilities that could allow an authenticated, remote malicious user to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected system via IPv4 or IPv6. Only traffic directed to an affected system can be used to exploit these vulnerabilities. The vulnerabilities are due to a buffer overflow condition in the SNMP subsystem of the affected software. The vulnerabilities affect all versions of SNMP: Versions 1, 2c, and 3. To exploit these vulnerabilities via SNMP Version 2c or earlier, the attacker must know the SNMP read-only community string for the affected system. To exploit these vulnerabilities via SNMP Version 3, the attacker must have user credentials for the affected system. All devices that have enabled SNMP and have not explicitly excluded the affected MIBs or OIDs should be considered vulnerable. Cisco Bug IDs: CSCve60402.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.2\\(33\\)sxi

cisco ios 12.2\\(33\\)sxi1

cisco ios 12.2\\(50\\)se

cisco ios 12.2\\(50\\)sg7

cisco ios 12.2\\(50\\)sg8

cisco ios 12.2\\(50\\)sq

cisco ios 12.2\\(50\\)sq1

cisco ios 12.2\\(50\\)sq2

cisco ios 12.2\\(52\\)ey2a

cisco ios 12.2\\(52\\)ey3

cisco ios 12.2\\(52\\)ey3a

cisco ios 12.2\\(52\\)ey4

cisco ios 12.2\\(53\\)sg3

cisco ios 12.2\\(53\\)sg4

cisco ios 12.2\\(53\\)sg5

cisco ios 12.2\\(53\\)sg6

cisco ios 12.2\\(55\\)ex3

cisco ios 12.2\\(55\\)ey

cisco ios 12.2\\(55\\)ez

cisco ios 12.2\\(55\\)se

cisco ios 12.2\\(58\\)ey

cisco ios 12.2\\(58\\)ey1

cisco ios 12.2\\(58\\)ey2

cisco ios 12.2\\(58\\)ez

cisco ios 12.2\\(60\\)ez10

cisco ios 12.2\\(60\\)ez11

cisco ios 15.0\\(1\\)ex

cisco ios 15.0\\(1\\)ey

cisco ios 12.2\\(50\\)se5

cisco ios 12.2\\(50\\)sg

cisco ios 12.2\\(50\\)sg1

cisco ios 12.2\\(50\\)sg2

cisco ios 12.2\\(50\\)sq7

cisco ios 12.2\\(52\\)ex

cisco ios 12.2\\(52\\)ex1

cisco ios 12.2\\(52\\)ey

cisco ios 12.2\\(53\\)ey

cisco ios 12.2\\(53\\)ez

cisco ios 12.2\\(53\\)se

cisco ios 12.2\\(53\\)se1

cisco ios 12.2\\(53\\)sg11

cisco ios 12.2\\(54\\)se

cisco ios 12.2\\(54\\)sg

cisco ios 12.2\\(54\\)sg1

cisco ios 12.2\\(55\\)se5

cisco ios 12.2\\(55\\)se6

cisco ios 12.2\\(55\\)se7

cisco ios 12.2\\(55\\)se8

cisco ios 12.2\\(60\\)ez2

cisco ios 12.2\\(60\\)ez3

cisco ios 12.2\\(60\\)ez4

cisco ios 12.2\\(60\\)ez5

cisco ios 15.0\\(1\\)se2

cisco ios 15.0\\(1\\)se3

cisco ios 15.0\\(1\\)xo

cisco ios 15.0\\(1\\)xo1

cisco ios 15.0\\(2\\)ea1

cisco ios 15.0\\(2\\)ex3

cisco ios 15.0\\(2\\)ex4

cisco ios 15.0\\(2\\)ex5

cisco ios 15.0\\(2\\)ex8

cisco ios 15.0\\(2\\)se7

cisco ios 15.0\\(2\\)se9

cisco ios 15.0\\(2\\)se10

cisco ios 15.0\\(2\\)se10a

cisco ios 15.0\\(2\\)sqd

cisco ios 15.0\\(2\\)sqd1

cisco ios 15.0\\(2\\)sqd2

cisco ios 15.0\\(2\\)sqd3

cisco ios 15.0\\(2\\)sqd5

cisco ios 15.1\\(2\\)sg5

cisco ios 15.1\\(2\\)sg6

cisco ios 15.1\\(2\\)sg7

cisco ios 15.1\\(2\\)sg8

cisco ios 15.2\\(2\\)e1

cisco ios 15.2\\(2\\)e2

cisco ios 15.2\\(2\\)e3

cisco ios 15.2\\(2\\)e4

cisco ios 15.2\\(2\\)t1

cisco ios 15.2\\(2\\)t2

cisco ios 15.2\\(2\\)t3

cisco ios 15.2\\(2\\)t4

cisco ios 15.2\\(3\\)t4

cisco ios 15.2\\(3a\\)e

cisco ios 15.2\\(3m\\)e2

cisco ios 15.2\\(3m\\)e3

cisco ios 15.2\\(4\\)e

cisco ios 15.2\\(4\\)gc3

cisco ios 15.2\\(4\\)m

cisco ios 15.2\\(4\\)m1

cisco ios 15.2\\(4\\)m2

cisco ios 15.2\\(5\\)e

cisco ios 15.2\\(5\\)e1

cisco ios 15.2\\(5\\)e2

cisco ios 15.2\\(5\\)e2a

cisco ios 15.3\\(1\\)t4

cisco ios 15.3\\(2\\)t

cisco ios 15.3\\(2\\)t1

cisco ios 15.3\\(2\\)t2

cisco ios 15.3\\(2\\)t3

cisco ios 15.4\\(1\\)sy

cisco ios 15.4\\(1\\)sy1

cisco ios 15.4\\(1\\)sy2

cisco ios 15.4\\(1\\)t

cisco ios 15.4\\(3\\)m3

cisco ios 15.0\\(2\\)eh

cisco ios 15.0\\(2\\)ej

cisco ios 15.0\\(2\\)ej1

cisco ios 15.0\\(2\\)ek

cisco ios 15.0\\(2\\)ey3

cisco ios 15.0\\(2\\)ez

cisco ios 15.0\\(2\\)se

cisco ios 15.0\\(2\\)se1

cisco ios 15.0\\(2\\)se2

cisco ios 15.0\\(2\\)sg4

cisco ios 15.0\\(2\\)sg5

cisco ios 15.0\\(2\\)sg6

cisco ios 15.0\\(2\\)sg7

cisco ios 15.1\\(1\\)sg

cisco ios 15.1\\(1\\)sg1

cisco ios 15.1\\(1\\)sg2

cisco ios 15.1\\(2\\)sg

cisco ios 15.2\\(1\\)sy

cisco ios 15.2\\(1\\)sy0a

cisco ios 15.2\\(1\\)sy1

cisco ios 15.2\\(1\\)sy1a

cisco ios 15.2\\(2\\)ea3

cisco ios 15.2\\(2\\)eb

cisco ios 15.2\\(2\\)eb1

cisco ios 15.2\\(2\\)eb2

cisco ios 15.2\\(3\\)e3

cisco ios 15.2\\(3\\)ea

cisco ios 15.2\\(3\\)gc

cisco ios 15.2\\(3\\)gc1

cisco ios 15.2\\(4\\)ea

cisco ios 15.2\\(4\\)ea1

cisco ios 15.2\\(4\\)ea3

cisco ios 15.2\\(4\\)ea4

cisco ios 15.2\\(4\\)m6a

cisco ios 15.2\\(4\\)m7

cisco ios 15.2\\(4\\)m8

cisco ios 15.2\\(4\\)m9

cisco ios 15.2\\(4\\)m10

cisco ios 15.2\\(5b\\)e

cisco ios 15.2\\(5c\\)e

cisco ios 15.3\\(1\\)sy

cisco ios 15.3\\(1\\)sy2

cisco ios 15.3\\(3\\)m3

cisco ios 15.3\\(3\\)m4

cisco ios 15.3\\(3\\)m5

cisco ios 15.3\\(3\\)m6

cisco ios 15.4\\(2\\)t

cisco ios 15.4\\(2\\)t1

cisco ios 15.4\\(2\\)t2

cisco ios 15.4\\(2\\)t3

cisco ios 15.5\\(1\\)t1

cisco ios 15.5\\(1\\)t2

cisco ios 15.5\\(1\\)t3

cisco ios 15.5\\(1\\)t4

cisco ios 15.6\\(1\\)t

cisco ios 15.6\\(1\\)t0a

cisco ios 15.6\\(1\\)t1

cisco ios 15.6\\(1\\)t2

cisco ios 12.2\\(50\\)se2

cisco ios 12.2\\(50\\)se4

cisco ios 12.2\\(50\\)sg3

cisco ios 12.2\\(50\\)sg5

cisco ios 12.2\\(50\\)sq3

cisco ios 12.2\\(50\\)sq5

cisco ios 12.2\\(52\\)ey1b

cisco ios 12.2\\(52\\)ey2

cisco ios 12.2\\(52\\)se

cisco ios 12.2\\(52\\)sg

cisco ios 12.2\\(53\\)ex

cisco ios 12.2\\(53\\)se2

cisco ios 12.2\\(53\\)sg1

cisco ios 12.2\\(53\\)sg8

cisco ios 12.2\\(53\\)sg10

cisco ios 12.2\\(54\\)wo

cisco ios 12.2\\(55\\)ex

cisco ios 12.2\\(55\\)ex2

cisco ios 12.2\\(55\\)se1

cisco ios 12.2\\(55\\)se3

cisco ios 12.2\\(55\\)se10

cisco ios 12.2\\(58\\)ex

cisco ios 12.2\\(58\\)se

cisco ios 12.2\\(58\\)se2

cisco ios 12.2\\(60\\)ez1

cisco ios 12.2\\(60\\)ez6

cisco ios 12.2\\(60\\)ez8

cisco ios 15.0\\(1\\)ey2

cisco ios 15.0\\(1\\)se1

cisco ios 15.0\\(2\\)ec

cisco ios 15.0\\(2\\)ed1

cisco ios 15.0\\(2\\)ek1

cisco ios 15.0\\(2\\)ex1

cisco ios 15.0\\(2\\)ey

cisco ios 15.0\\(2\\)ey2

cisco ios 15.0\\(2\\)se4

cisco ios 15.0\\(2\\)se6

cisco ios 15.0\\(2\\)sg

cisco ios 15.0\\(2\\)sg2

cisco ios 15.0\\(2\\)sg9

cisco ios 15.0\\(2\\)sg11

cisco ios 15.0\\(2\\)xo

cisco ios 15.0\\(2a\\)se9

cisco ios 15.1\\(2\\)sg1

cisco ios 15.1\\(2\\)sg3

cisco ios 15.2\\(1\\)e1

cisco ios 15.2\\(1\\)e3

cisco ios 15.2\\(1\\)sy3

cisco ios 15.2\\(2\\)e

cisco ios 15.2\\(2\\)e5

cisco ios 15.2\\(2\\)ea1

cisco ios 15.2\\(2\\)sy

cisco ios 15.2\\(2\\)sy2

cisco ios 15.2\\(3\\)e

cisco ios 15.2\\(3\\)e2

cisco ios 15.2\\(3\\)t

cisco ios 15.2\\(3\\)t2

cisco ios 15.2\\(4\\)e1

cisco ios 15.2\\(4\\)e3

cisco ios 15.2\\(4\\)gc

cisco ios 15.2\\(4\\)gc2

cisco ios 15.2\\(4\\)m3

cisco ios 15.2\\(4\\)m5

cisco ios 15.2\\(4\\)m11

cisco ios 15.2\\(4m\\)e3

cisco ios 15.2\\(5\\)ex

cisco ios 15.2\\(5a\\)e1

cisco ios 15.3\\(1\\)t

cisco ios 15.3\\(1\\)t2

cisco ios 15.3\\(2\\)t4

cisco ios 15.3\\(3\\)m1

cisco ios 15.3\\(3\\)m9

cisco ios 15.4\\(1\\)cg1

cisco ios 15.4\\(1\\)t1

cisco ios 15.4\\(1\\)t3

cisco ios 15.4\\(2\\)cg

cisco ios 15.4\\(2\\)t4

cisco ios 15.4\\(3\\)m1

cisco ios 15.4\\(3\\)m7

cisco ios 15.5\\(1\\)t

cisco ios 15.5\\(2\\)t

cisco ios 15.5\\(2\\)t2

cisco ios 15.5\\(2\\)t4

cisco ios 15.5\\(3\\)m4

cisco ios 15.5\\(3\\)m5

cisco ios 15.6\\(2\\)t1

cisco ios 15.6\\(3\\)m

cisco ios 15.4\\(3\\)m4

cisco ios 15.4\\(3\\)m5

cisco ios 15.4\\(3\\)m6

cisco ios 15.5\\(3\\)m0a

cisco ios 15.5\\(3\\)m1

cisco ios 15.5\\(3\\)m2

cisco ios 15.5\\(3\\)m3

cisco ios 15.6\\(3\\)m0a

cisco ios 15.6\\(3\\)m1

cisco ios 15.6\\(3\\)m1b

cisco ios 15.6\\(3\\)m2

cisco ios 15.6\\(3\\)m2a

cisco ios 12.2\\(50\\)se1

cisco ios 12.2\\(50\\)se3

cisco ios 12.2\\(50\\)sg4

cisco ios 12.2\\(50\\)sg6

cisco ios 12.2\\(50\\)sq4

cisco ios 12.2\\(50\\)sq6

cisco ios 12.2\\(52\\)ey1

cisco ios 12.2\\(52\\)ey1c

cisco ios 12.2\\(52\\)se1

cisco ios 12.2\\(52\\)xo

cisco ios 12.2\\(53\\)sg

cisco ios 12.2\\(53\\)sg2

cisco ios 12.2\\(53\\)sg7

cisco ios 12.2\\(53\\)sg9

cisco ios 12.2\\(54\\)xo

cisco ios 12.2\\(55\\)ex1

cisco ios 12.2\\(55\\)se2

cisco ios 12.2\\(55\\)se4

cisco ios 12.2\\(55\\)se9

cisco ios 12.2\\(55\\)se11

cisco ios 12.2\\(58\\)se1

cisco ios 12.2\\(60\\)ez

cisco ios 12.2\\(60\\)ez7

cisco ios 12.2\\(60\\)ez9

cisco ios 15.0\\(1\\)ey1

cisco ios 15.0\\(1\\)se

cisco ios 15.0\\(2\\)eb

cisco ios 15.0\\(2\\)ed

cisco ios 15.0\\(2\\)ex

cisco ios 15.0\\(2\\)ex2

cisco ios 15.0\\(2\\)ex10

cisco ios 15.0\\(2\\)ey1

cisco ios 15.0\\(2\\)se3

cisco ios 15.0\\(2\\)se5

cisco ios 15.0\\(2\\)sg1

cisco ios 15.0\\(2\\)sg3

cisco ios 15.0\\(2\\)sg8

cisco ios 15.0\\(2\\)sg10

cisco ios 15.0\\(2\\)sqd6

cisco ios 15.0\\(2a\\)ex5

cisco ios 15.1\\(2\\)sg2

cisco ios 15.1\\(2\\)sg4

cisco ios 15.2\\(1\\)e

cisco ios 15.2\\(1\\)e2

cisco ios 15.2\\(1\\)ey

cisco ios 15.2\\(1\\)sy2

cisco ios 15.2\\(1\\)sy4

cisco ios 15.2\\(2\\)e5a

cisco ios 15.2\\(2\\)ea2

cisco ios 15.2\\(2\\)gc

cisco ios 15.2\\(2\\)sy1

cisco ios 15.2\\(2\\)t

cisco ios 15.2\\(2a\\)e1

cisco ios 15.2\\(3\\)e1

cisco ios 15.2\\(3\\)t1

cisco ios 15.2\\(3\\)t3

cisco ios 15.2\\(4\\)e2

cisco ios 15.2\\(4\\)e4

cisco ios 15.2\\(4\\)ec1

cisco ios 15.2\\(4\\)gc1

cisco ios 15.2\\(4\\)m4

cisco ios 15.2\\(4\\)m6

cisco ios 15.2\\(4m\\)e1

cisco ios 15.2\\(4p\\)e1

cisco ios 15.2\\(5\\)ea

cisco ios 15.2\\(5a\\)e

cisco ios 15.3\\(1\\)t1

cisco ios 15.3\\(1\\)t3

cisco ios 15.3\\(3\\)m

cisco ios 15.3\\(3\\)m2

cisco ios 15.3\\(3\\)m7

cisco ios 15.4\\(1\\)cg

cisco ios 15.4\\(1\\)t2

cisco ios 15.4\\(1\\)t4

cisco ios 15.4\\(3\\)m

cisco ios 15.4\\(3\\)m2

cisco ios 15.4\\(3\\)m6a

cisco ios 15.5\\(1\\)sy

cisco ios 15.5\\(2\\)t1

cisco ios 15.5\\(2\\)t3

cisco ios 15.5\\(3\\)m4a

cisco ios 15.5\\(3\\)m6

cisco ios 15.6\\(2\\)t

cisco ios 15.6\\(2\\)t2

cisco ios 15.6\\(3\\)m3

Vendor Advisories

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabilities that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an aff ...

Recent Articles

Management bug can crash Cisco IOS, IOS XE
The Register • Richard Chirgwin • 30 Jun 2017

Nine SNMP MIBs vulnerable

Cisco's been caught out by the venerable Simple Network Management Protocol, turning up nine bugs in IOS and IOS XE that appear in all SNMP versions. Its implementation of SNMP v1, v2c and v3 – in other words, all versions in use – has a buffer overflow condition that in the right conditions can be exploited for denial-of-service and remote code execution. The two older versions are vulnerable if an attacker knows a network's read-only SNMP community string; SNMP v3 is only vulnerable if a...