CVE-2017-3881 is a critical vulnerability in Cisco IOS and IOS XE Software affecting numerous Cisco Catalyst and Industrial Ethernet switches. It stems from improper processing of malformed Cluster Management Protocol (CMP)-specific Telnet options, allowing an unauthenticated, remote attacker to cause a device reload or execute arbitrary code with elevated privileges. With a CVSS score of 9.8 (CRITICAL), it is easily exploitable over the network with low complexity and no user interaction, leading to full control of the device. This vulnerability is actively exploited in the wild, with public exploit code available in Metasploit and ExploitDB, and has garnered significant community discussion and media coverage, including its use in sophisticated campaigns like "Operation ZeroDisco."
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.2s, <= 15.1\(3\)svsCPE matchmatch criteria | cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:* | ||
>= 3.2sg, <= 3.9eCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.