cvedb.io
CVE-2017-3839
MEDIUM · CVSS 4.3
EPSS exploitation probability: 0%
Published 2017-02-22T02:59:00.513 · Last modified 2026-06-17T01:19:01.533

Summary

An XML External Entity vulnerability in the web-based user interface of the Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to have read access to part of the information stored in the affected system. More Information: CSCvc04845. Known Affected Releases: 5.8(2.5).

Affected products

cisco — secure_access_control_system

Does this affect you?

Add your gear to cvedb and we'll alert you only when cisco ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.