Cisco Elastic Services Controller Configuration Files Information Disclosure Vulnerability
The vulnerability is due to insufficient protection of sensitive data. An attacker could exploit this vulnerability by authenticating to the application and navigating to certain configuration files. An exploit could allow the attacker to view sensitive system configuration files.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
http://ift.tt/2vJ8qS0
The vulnerability is due to insufficient protection of sensitive data. An attacker could exploit this vulnerability by authenticating to the application and navigating to certain configuration files. An exploit could allow the attacker to view sensitive system configuration files.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
http://ift.tt/2vJ8qS0
Security Impact Rating: Medium
CVE: CVE-2017-6772
from Cisco Security Advisory http://ift.tt/2vJ8qS0