CVE-2017-3881
Cisco IOS and IOS XE Remote Code Execution Vulnerability
9.8
CVSS 3.1
99.0 %
EPSS (current)
2022-03-25
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Cisco / IOS and IOS XE
Published: 2017-03-17 · Due (CISA): 2022-04-15
CWE: CWE-20 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| nuclei | network/cves/2017/CVE-2017-3881.yaml | Cisco IOS 12.2(55)SE11 - Remote Code Execution | – |
| metasploit | auxiliary/dos/cisco/ios_telnet_rocem | auxiliary/dos/cisco/ios_telnet_rocem | 2017-03-17 |
| exploitdb | 42122 | Cisco Catalyst 2960 IOS 12.2(55)SE1 - 'ROCEM' Remote Code Execution | 2017-04-12 |
| exploitdb | 41872 | Cisco Catalyst 2960 IOS 12.2(55)SE11 - 'ROCEM' Remote Code Execution | 2017-04-12 |
References only — no downloads or instructions.