CVE-2017-6741 is a high-severity buffer overflow vulnerability in the SNMP implementation of Cisco IOS XE, affecting all SNMP versions. An authenticated, remote attacker can exploit this by sending a crafted SNMP packet to cause a system reload or execute arbitrary code, gaining full system control. The vulnerability requires knowledge of the SNMP community string or user credentials. While no public exploits or active exploitation have been observed, and community discussion is minimal, its high CVSS score and FAUCET Risk Score indicate significant potential impact.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.2.0CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:2.2.0:*:*:*:*:*:*:* | ||
2.2.1CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:2.2.1:*:*:*:*:*:*:* | ||
2.2.2CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:2.2.2:*:*:*:*:*:*:* | ||
2.2.3CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:2.2.3:*:*:*:*:*:*:* | ||
2.3.0CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:2.3.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.