Command Injection Vulnerability in Cisco UCS Manager and Firepower Series
CVE-2017-6600
Key Information:
- Vendor
Cisco
- Status
- Vendor
- CVE Published:
- 7 April 2017
What is CVE-2017-6600?
The CLI of Cisco Unified Computing System (UCS) Manager and Cisco Firepower 4100 and 9300 Series appliances has a vulnerability that enables an authenticated local attacker to perform command injection. This weakness could lead to unauthorized execution of arbitrary commands within the affected systems. Versions up to Cisco UCS Manager 2.0(1.68) and Firepower 3.1(1k)A are impacted, emphasizing the need for immediate updates to resolved versions for security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco UCS Manager, Cisco Firepower 4100 Series NGFW, and Cisco Firepower 9300 Security Appliance Cisco UCS Manager, Cisco Firepower 4100 Series NGFW, and Cisco Firepower 9300 Security Appliance
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved