5
CVSSv2

CVE-2015-6368

Published: 19/11/2015 Updated: 19/11/2015
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote malicious users to read files via a crafted HTTP request, aka Bug ID CSCux10608.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco firepower extensible operating system 1.1\\(1.160\\)

Vendor Advisories

A vulnerability in the web interface of the Cisco Firepower 9000 Series Switches could allow an unauthenticated, remote attacker to view certain files on the device that should be restricted The vulnerability is due to lack of proper authentication checks when a request to download and view a file is received An attacker could exploit this vuln ...