CVE-2017-6771 is a sensitive information disclosure vulnerability in the AutoVNF automation tool within the Cisco Ultra Services Framework. An unauthenticated, remote attacker can exploit this flaw by accessing a specific URL on an affected device, specifically Cisco Ultra Services Framework version 21.0.v0.65839. The vulnerability is rated as High severity (CVSS 7.5), indicating that it can be exploited with low attack complexity to reveal sensitive configuration data without requiring user interaction. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), nor is there evidence of active exploitation or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
21.0.v0.65839CPE matchmatch criteria | cpe:2.3:a:cisco:ultra_services_framework:21.0.v0.65839:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.