CVE-2017-3827 is a medium-severity vulnerability affecting Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) running AsyncOS software. An unauthenticated, remote attacker could exploit a flaw in the MIME scanner to bypass configured user filters, potentially allowing malicious content to circumvent security policies. The CVSS score is 5.8, indicating a network-based attack with low complexity, resulting in a low impact on integrity and no impact on confidentiality or availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage regarding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0.0-082CPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:10.0.0-082:*:*:*:*:*:*:* | ||
10.0.0-124CPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:10.0.0-124:*:*:*:*:*:*:* | ||
10.0.0-125CPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:10.0.0-125:*:*:*:*:*:*:* | ||
10.0.0-203CPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:10.0.0-203:*:*:*:*:*:*:* | ||
10.0.0-232CPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:10.0.0-232:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.