Junglewise Threat Intelligence

CVE-2017-6740: Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability

CVE-2017-6740 · Severity: critical · CVSS 8.8 · Exploited in the wild · Published 2022-03-03

Technologies: Cisco IOS, Cisco IOS XE Software, Cisco IOS XE, Cisco IOS XR. Vendors: Cisco.

Executive brief

A buffer overflow vulnerability in the SNMP subsystem of Cisco IOS and IOS XE Software allows authenticated remote attackers to execute arbitrary code or cause a device reload. Exploitation requires sending crafted SNMP packets (v1, v2c, or v3) to an affected device, provided the attacker has the community string or user credentials.

Affected products

  • Cisco IOS 12.0 through 12.4, 15.0 through 15.6
  • Cisco IOS XE 2.2 through 3.17

Timeline

  • 2017-06-29: disclosed: Original Cisco advisory publication date
  • 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2022-03-03: exploited: Confirmed as exploited in the wild per CISA KEV entry

Related threats