CVE-2017-12299 describes a medium-severity vulnerability in Cisco ASA Next-Generation Firewall Services, specifically affecting the Cisco Firepower Extensible Operating System. An implementation error during device initialization allows unauthenticated, remote attackers to bypass configured filters and send traffic to the device's local IP address, potentially enabling unauthorized connections like SSH. While the CVSS score is 5.3, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.2\(1.58\)CPE matchmatch criteria | cpe:2.3:o:cisco:firepower_extensible_operating_system:2.2\(1.58\):*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.