Local Access Vulnerability in Cisco AMP for Endpoints Application
CVE-2017-12317
6.7MEDIUM
What is CVE-2017-12317?
The Cisco AMP for Endpoints application contains a vulnerability that permits authenticated local attackers to access a static key value embedded within the application software. This static key is utilized for encrypting the connector protection password, creating a security risk. An attacker with local administrative rights can exploit this vulnerability by stopping the Cisco AMP for Endpoints service, thereby potentially compromising sensitive information. To safeguard against this issue, it is crucial for users to maintain updated software versions and manage local access permissions effectively.
Affected Version(s)
Cisco AMP for Endpoints Cisco AMP for Endpoints