CVE detail
CVE-2017-6744 — Cisco IOS Software SNMP Remote Code Execution Vulnerability
Published 2022-03-03 · Modified 2022-03-03 · Source kev
HIGH
severity
CVSS-derived band
0.0716
EPSS probability
exploitation probability, 30d
94.0%
EPSS percentile
percentile vs all CVEs
LISTED
CISA KEV
due 2022-03-24
⚠ Actively exploited in the wild — CISA KEV listed 2022-03-03, federal remediation due 2022-03-24.
Description
The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS 1 contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload. An attacker could exploit these vulnerabilities by sending a crafted SNMP packet to an affected system via IPv4 or IPv6.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References