CVE-2015-6371
published 2015-11-19CVE-2015-6371: Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to read arbitrary files via crafted…
PriorityP423medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
0.97%
57.8th percentile
Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to read arbitrary files via crafted parameters to unspecified scripts, aka Bug ID CSCux10621.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firepower_9000 | — | — |
| cisco | firepower_extensible_operating_system | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
vendor_cisco·2015-11-17·CVSS 4.0
CVE-2015-6371 [MEDIUM] CWE-200 Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 devices could allow an authenticated, remote attacker to view any file on the device, even ones that should be restricted to authenticated users.
The vulnerability is due to lack of input validation of the parameters passed to certain user scripts. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to certain script files to view files that should be restricted.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/C
Cisco
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
vendor_cisco
CVE-2015-6371 Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
CVE-2015-6371: Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 devices could allow an authenticated, remote attacker to view any file on the device, even ones that should be restricted to authenticated users. The vulnerability is due to lack of input validation of the parameters passed to certain user scripts. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to certain script files to view files that should be restricted. Cisco has not released software updates that address this vulnerability.
CWE: CWE-200, CWE-200
Bug IDs: CSCux10621
GHSA
GHSA-qpr8-p974-723p: Cisco Firepower Extensible Operating System 1
ghsa_unreviewed·2022-05-17
CVE-2015-6371 [MEDIUM] CWE-200 GHSA-qpr8-p974-723p: Cisco Firepower Extensible Operating System 1
Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to read arbitrary files via crafted parameters to unspecified scripts, aka Bug ID CSCux10621.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-11-19
Published