5
CVSSv2

CVE-2017-6751

Published: 25/07/2017 Updated: 05/04/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

A vulnerability in the web proxy functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote malicious user to forward traffic from the web proxy interface of an affected device to the administrative management interface of an affected device, aka an Access Control Bypass Vulnerability. Affected Products: virtual and hardware versions of Cisco Web Security Appliance (WSA). More Information: CSCvd88863. Known Affected Releases: 10.1.0-204 9.0.0-485.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco web security appliance 9.0.0-162

cisco web security appliance 9.0.0-193

cisco web security appliance 9.0.0-485

cisco web security appliance 10.0.0-232

cisco web security appliance 10.0.0-233

cisco web security appliance 10.1.0-204

cisco web security virtual appliance 9.0.0

cisco web security virtual appliance 10.0.0

cisco web security virtual appliance 10.1.0

cisco web security virtual appliance 10.1.1

Vendor Advisories

A vulnerability in the web proxy functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to forward traffic from the web proxy interface of an affected device to the administrative management interface of an affected device The vulnerability exists because the affected software fails to deny traffic ...