VDB

CVE-2017-3839

CVE-2017-3839 PUBLISHED CVSS 4 MEDIUM

An XML External Entity vulnerability in the web-based user interface of the Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to have read access to part of the information stored in the affected system. More Information: CSCvc04845. Known Affected Releases: 5.8(2.5).

EPSS 0.40% · 60.9th percentile

Risk Scores

CVSS 2.0
4
EPSS Score
0.40%
60.9th percentile

Affected Products

VendorProductVersions
ciscosecure_access_control_system5.8\(2.5\)
n/aCisco Secure Access Control System*

Timeline

  • Feb 15, 2017 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›