CVE-2017-12317

medium
Published 2017-10-22 ยท Modified 2026-05-13
CVSS v3
6.7
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
6.7

Description

The Cisco AMP For Endpoints application allows an authenticated, local attacker to access a static key value stored in the local application software. The vulnerability is due to the use of a static key value stored in the application used to encrypt the connector protection password. An attacker could exploit this vulnerability by gaining local, administrative access to a Windows host and stopping the Cisco AMP for Endpoints service. Cisco Bug IDs: CSCvg42904.

Predictions

Exploit likelihood
66%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
cisco ciscoadvanced_malware_protection3.1\(10\)
cisco ciscoadvanced_malware_protection3.1\(15\)
cisco ciscoadvanced_malware_protection4.0\(0\)
cisco ciscoadvanced_malware_protection4.0\(1\)
cisco ciscoadvanced_malware_protection4.0\(2\)
cisco ciscoadvanced_malware_protection4.1\(0\)
cisco ciscoadvanced_malware_protection4.1\(1\)
cisco ciscoadvanced_malware_protection4.1\(4\)
cisco ciscoadvanced_malware_protection4.2\(0\)
cisco ciscoadvanced_malware_protection4.2\(1\)
cisco ciscoadvanced_malware_protection4.3\(0\)
cisco ciscoadvanced_malware_protection4.3\(1\)
cisco ciscoadvanced_malware_protection4.4\(0\)
cisco ciscoadvanced_malware_protection4.4\(1\)
cisco ciscoadvanced_malware_protection4.4\(2\)
cisco ciscoadvanced_malware_protection4.4\(4\)
cisco ciscoadvanced_malware_protection5.0\(1\)
cisco ciscoadvanced_malware_protection5.0\(3\)
cisco ciscoadvanced_malware_protection5.0\(5\)
cisco ciscoadvanced_malware_protection5.0\(7\)
cisco ciscoadvanced_malware_protection5.0\(9\)
cisco ciscoadvanced_malware_protection5.1\(1\)
cisco ciscoadvanced_malware_protection5.1\(3\)
cisco ciscoadvanced_malware_protection5.1\(5\)
cisco ciscoadvanced_malware_protection5.1\(7\)
cisco ciscoadvanced_malware_protection5.1\(9\)
cisco ciscoadvanced_malware_protection5.1\(11\)
cisco ciscoadvanced_malware_protection5.1\(13\)
cisco ciscoadvanced_malware_protection6.0\(1\)

References

CWEs

CWE-798

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.