PatchSiren cyber security CVE debrief
CVE-2017-3843 Cisco CVE debrief
CVE-2017-3843 is an access-control weakness in Cisco Prime Collaboration Assurance file download functions. An authenticated remote attacker could download system files that should have remained restricted. Cisco/NVD published the issue on 2017-02-22, and NVD rates it Medium with CVSS 4.3.
- Vendor
- Cisco
- Product
- Prime Collaboration Assurance
- CVSS
- MEDIUM 4.3
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2017-02-22
- Original CVE updated
- 2026-05-13
- Advisory published
- 2017-02-22
- Advisory updated
- 2026-05-13
Who should care
Administrators and security teams responsible for Cisco Prime Collaboration Assurance deployments, especially environments running affected releases. Any system exposing the file download feature to authenticated users should be reviewed.
Technical summary
The vulnerability is described as a file download function flaw that can allow an authenticated remote attacker to retrieve restricted system files. NVD maps the weakness to CWE-20 and lists vulnerable CPEs for Cisco Prime Collaboration Assurance 11.0.0, 11.1.0, and 11.5.0. The CVSS vector is AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N, indicating network reachability with required login privileges and limited confidentiality impact.
Defensive priority
Medium. The issue does not indicate code execution or service disruption, but it can expose restricted system data to authenticated users. Prioritize if the product is internet-accessible, widely used, or contains sensitive operational data.
Recommended defensive actions
- Confirm whether Cisco Prime Collaboration Assurance is deployed and identify the exact version.
- Treat 11.0.0, 11.1.0, and 11.5.0 as affected based on the NVD CPE list; also review Cisco's advisory linked from the NVD record.
- Restrict access to the application to trusted administrative networks and limit the number of users who can reach file download features.
- Apply Cisco's remediation guidance or vendor updates referenced by the advisory when available.
- Review logs for unusual or high-volume file download activity by authenticated accounts.
- If immediate remediation is not possible, reduce exposure by tightening authentication, authorization, and network access controls around the application.
Evidence notes
All statements above are based on the supplied NVD record and its Cisco vendor-advisory reference. The NVD description states that an authenticated remote attacker could download restricted system files. NVD lists vulnerable CPEs for Cisco Prime Collaboration Assurance 11.0.0, 11.1.0, and 11.5.0 and assigns CVSS 3.0 vector AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N.
Sources and references
Verified primary and authoritative sources
-
CVE-2017-3843 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2017-3843
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2017-3843 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2017-3843
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Mitigation or vendor reference
Unverified legacy reference
URL: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170215-pcp1
[email protected] - Vendor Advisory
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.