CVE-2015-6370
published 2015-11-19CVE-2015-6370: The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary…
PriorityP337high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.39%
31.5th percentile
The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input, aka Bug ID CSCux10578.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firepower_9000 | — | — |
| cisco | firepower_extensible_operating_system | — | — |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_cisco4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6jgp-6m6r-qrvw: The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1
ghsa_unreviewed·2022-05-17
CVE-2015-6370 [HIGH] CWE-78 GHSA-6jgp-6m6r-qrvw: The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1
The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input, aka Bug ID CSCux10578.
Cisco
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
vendor_cisco·2015-11-17·CVSS 4.3
CVE-2015-6370 [MEDIUM] CWE-78 Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
A vulnerability in the Management I/O (MIO) command-line interface (CLI) command execution of Cisco Firepower 9000 devices could allow an authenticated, local attacker to access the underlying operating system and execute commands at the root privilege level.
The vulnerability is due to insufficient sanitization of user-supplied input at the CLI. An attacker could exploit this vulnerability by using crafted user input to execute commands on the underlying operating system. The user has to be logged-in to the device with valid admin credentials.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory
Cisco
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
vendor_cisco
CVE-2015-6370 Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
CVE-2015-6370: Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
A vulnerability in the Management I/O (MIO) command-line interface (CLI) command execution of Cisco Firepower 9000 devices could allow an authenticated, local attacker to access the underlying operating system and execute commands at the root privilege level. The vulnerability is due to insufficient sanitization of user-supplied input at the CLI. An attacker could exploit this vulnerability by using crafted user input to execute commands on the underlying operating system. The user has to be logged-in to the device with valid admin credentials. Cisco has not released software updates that address this vulnerability.
CWE: CWE-78, CWE-78
Bug IDs: CSCux10576, CSCux10578
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-11-19
Published