Show filters
56 Total Results
Displaying 51-56 of 56
Sort by:
Attacker Value
Unknown

CVE-2015-6370

Disclosure Date: November 19, 2015 (last updated October 05, 2023)
The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input, aka Bug ID CSCux10578.
0
Attacker Value
Unknown

CVE-2015-6368

Disclosure Date: November 19, 2015 (last updated October 05, 2023)
Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to read files via a crafted HTTP request, aka Bug ID CSCux10608.
0
Attacker Value
Unknown

CVE-2015-6374

Disclosure Date: November 19, 2015 (last updated October 05, 2023)
The web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, aka Bug ID CSCux10604.
0
Attacker Value
Unknown

CVE-2015-6373

Disclosure Date: November 18, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCux10611.
0
Attacker Value
Unknown

CVE-2015-6372

Disclosure Date: November 18, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to inject arbitrary web script or HTML via a crafted value, aka Bug ID CSCux10614.
0
Attacker Value
Unknown

CVE-2015-4287

Disclosure Date: July 29, 2015 (last updated October 05, 2023)
Cisco Firepower Extensible Operating System 1.1(1.86) on Firepower 9000 devices allows remote attackers to bypass intended access restrictions and obtain sensitive device information by visiting an unspecified web page, aka Bug ID CSCuu82230.
0