CVE Database
/

CVE-2017-12317

Back to search

CVE-2017-12317

Published: Oct 21, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

The Cisco AMP For Endpoints application allows an authenticated, local attacker to access a static key value stored in the local application software. The vulnerability is due to the use of a static key value stored in the application used to encrypt the connector protection password. An attacker could exploit this vulnerability by gaining local, administrative access to a Windows host and stopping the Cisco AMP for Endpoints service. Cisco Bug IDs: CSCvg42904.

VendorProductVersions

n/a

Cisco AMP for Endpoints

affected
Cisco AMP for Endpoints

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now