Information Disclosure in Cisco Wide Area Application Services by Remote Attackers
CVE-2017-6730
5.3MEDIUM
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 10 July 2017
What is CVE-2017-6730?
A vulnerability exists in the web-based GUI of Cisco Wide Area Application Services (WAAS) Central Manager, allowing unauthenticated remote attackers to access completed reports from the affected system. This issue specifically impacts configurations utilizing the Central Manager function across several versions of Cisco WAAS software. Notably, versions 4.4(7), 6.2(1), and 6.2(3) are susceptible, while fixed releases include 6.3(0.228), 6.3(0.226), 6.2(3d)8, and 5.5(7b)17. It is crucial for administrators using affected versions to apply the necessary updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Cisco Wide Area Application Services Cisco Wide Area Application Services