CVE-2015-6335
published 2015-10-25CVE-2015-6335: The policy implementation in Cisco FireSIGHT Management Center 5.3.1.7, 5.4.0.4, and 6.0.0 for VMware allows remote authenticated administrators to bypass…
PriorityP348critical9CVSS 2.0
AVNACLAuSCCICAC
EPSS
2.74%
84.5th percentile
The policy implementation in Cisco FireSIGHT Management Center 5.3.1.7, 5.4.0.4, and 6.0.0 for VMware allows remote authenticated administrators to bypass intended policy restrictions and execute Linux commands as root via unspecified vectors, aka Bug ID CSCuw12839.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firesight_management_center_policy_code_for_vmware | — | — |
| cisco | firesight_system_software | — | — |
| cisco | firesight_system_software | — | — |
| cisco | firesight_system_software | — | — |
CVSS provenance
nvdv2.09.0CRITICALAV:N/AC:L/Au:S/C:C/I:C/A:C
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vmwq-5qfw-x847: The policy implementation in Cisco FireSIGHT Management Center 5
ghsa_unreviewed·2022-05-17
CVE-2015-6335 [HIGH] GHSA-vmwq-5qfw-x847: The policy implementation in Cisco FireSIGHT Management Center 5
The policy implementation in Cisco FireSIGHT Management Center 5.3.1.7, 5.4.0.4, and 6.0.0 for VMware allows remote authenticated administrators to bypass intended policy restrictions and execute Linux commands as root via unspecified vectors, aka Bug ID CSCuw12839.
Cisco
Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
vendor_cisco·2015-10-19·CVSS 4.0
CVE-2015-6335 [MEDIUM] CWE-264 Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
A vulnerability in the policy code of Cisco FireSIGHT Management Center for VMware could allow an authenticated, remote attacker to access the underlying Linux operating system with the privileges of the root user.
The vulnerability is due to insufficient sanitization of user-supplied input. An attacker could exploit this vulnerability by bypassing policy restrictions and executing commands on the underlying operating system. The user needs to log in to the device with valid administrator-level credentials.
Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link:
https://s
Cisco
Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
vendor_cisco
CVE-2015-6335 Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
CVE-2015-6335: Cisco FireSIGHT Management Center Policy Code for VMware Privilege Escalation Vulnerability
A vulnerability in the policy code of Cisco FireSIGHT Management Center for VMware could allow an authenticated, remote attacker to access the underlying Linux operating system with the privileges of the root user. The vulnerability is due to insufficient sanitization of user-supplied input. An attacker could exploit this vulnerability by bypassing policy restrictions and executing commands on the underlying operating system. The user needs to log in to the device with valid administrator-level credentials. Cisco has released software updates that address this vulnerability.
CWE: CWE-264, CWE-264
Bug IDs: CSCuw12839
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-10-25
Published