cbcvebase.
CVE-2015-6380
published 2015-11-24

CVE-2015-6380: An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated…

PriorityP338medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
1.14%
63.0th percentile
An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622.

Affected

2 ranges
VendorProductVersion rangeFixed in
ciscofirepower_9000_operating_system
ciscofirepower_extensible_operating_system

CVSS provenance

nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_cisco6.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.