CVE-2017-3841 describes a sensitive information disclosure vulnerability in the web interface of Cisco Secure Access Control System (ACS) version 5.8(2.5). This high-severity vulnerability (CVSS 7.5) allows an unauthenticated, remote attacker to extract confidential data with low attack complexity. While no public exploit code or active exploitation has been observed, and community discussion is minimal, organizations using the affected product should prioritize patching.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.8\(2.5\)CPE matchmatch criteria | cpe:2.3:a:cisco:secure_access_control_system:5.8\(2.5\):*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.