CVE-2015-0739
published 2015-05-19CVE-2015-0739: The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5.3.0 on Sourcefire 3D Sensor devices allows remote authenticated users to…
PriorityP426medium4CVSS 2.0
AVNACLAuSCNIPAN
EPSS
2.01%
78.7th percentile
The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5.3.0 on Sourcefire 3D Sensor devices allows remote authenticated users to perform arbitrary Baseboard Management Controller (BMC) file uploads via unspecified vectors, aka Bug ID CSCus87938.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firesight_system_software | — | — |
| libssh | libssh | >= 0 < 0.6.1-0ubuntu3.3 | 0.6.1-0ubuntu3.3 |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
osv7.5HIGH
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-96qq-q3wg-46mx: The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5
ghsa_unreviewed·2022-05-17
CVE-2015-0739 [MEDIUM] CWE-20 GHSA-96qq-q3wg-46mx: The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5
The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5.3.0 on Sourcefire 3D Sensor devices allows remote authenticated users to perform arbitrary Baseboard Management Controller (BMC) file uploads via unspecified vectors, aka Bug ID CSCus87938.
OSV
libssh vulnerabilities
osv·2016-02-23·CVSS 7.5
CVE-2015-3146 libssh vulnerabilities
libssh vulnerabilities
Mariusz Ziulek discovered that libssh incorrectly handled certain packets.
A remote attacker could possibly use this issue to cause libssh to crash,
resulting in a denial of service.
(CVE-2015-3146)
Aris Adamantiadis discovered that libssh incorrectly generated ephemeral
secret keys of 128 bits instead of the recommended 1024 or 2048 bits when
using the diffie-hellman-group1 and diffie-hellman-group14 methods. If a
remote attacker were able to perform a machine-in-the-middle attack, this flaw
could be exploited to view sensitive information. (CVE-2016-0739)
Cisco
Cisco Sourcefire 3D System Lights-Out Management Arbitrary File Upload Vulnerability
vendor_cisco·2015-05-18·CVSS 4.0
CVE-2015-0739 [MEDIUM] CWE-20 Cisco Sourcefire 3D System Lights-Out Management Arbitrary File Upload Vulnerability
Cisco Sourcefire 3D System Lights-Out Management Arbitrary File Upload Vulnerability
A vulnerability in Lights-Out Management (LOM) functionality of the Sourcefire 3D System could allow an authenticated, remote attacker to upload arbitrary files to the baseboard management controller (BMC) on an affected device.
The vulnerability is due to insufficient validation and sanitization of user-supplied input. An attacker could exploit this vulnerability by sending crafted requests to the affected system. An exploit could allow the attacker to upload arbitrary files to the BMC on an affected device.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit this vulnerability, an attacker must authenticate to the affected device. This access requirement de
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-05-19
Published