CVE-2015-6380
published 2015-11-24CVE-2015-6380: An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated…
PriorityP338medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
1.14%
63.0th percentile
An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firepower_9000_operating_system | — | — |
| cisco | firepower_extensible_operating_system | — | — |
CVSS provenance
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_cisco6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firepower 9000 Operating System Command Injection Vulnerability
vendor_cisco·2015-11-23·CVSS 6.0
CVE-2015-6380 [MEDIUM] CWE-78 Cisco Firepower 9000 Operating System Command Injection Vulnerability
Cisco Firepower 9000 Operating System Command Injection Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system with the privileges of the authenticated user. The script can be accessed via the web interface.
The vulnerability is due to lack of input validation of the parameters passed to the user script. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to specific script files to inject arbitrary commands. These commands are at the privilege level of the authenticated user.
Cisco has not released software updates that address this vulnerability. There are no workarounds that address this vulnerabilit
Cisco
Cisco Firepower 9000 Operating System Command Injection Vulnerability
vendor_cisco
CVE-2015-6380 Cisco Firepower 9000 Operating System Command Injection Vulnerability
CVE-2015-6380: Cisco Firepower 9000 Operating System Command Injection Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system with the privileges of the authenticated user. The script can be accessed via the web interface. The vulnerability is due to lack of input validation of the parameters passed to the user script. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to specific script files to inject arbitrary commands. These commands are at the privilege level of the authenticated user. Cisco has not released software updates that address this vulnerability. There are no
CWE: CWE-78, CWE-78
Bug IDs: C
GHSA
GHSA-vq73-vxpx-j3wr: An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1
ghsa_unreviewed·2022-05-17
CVE-2015-6380 [MEDIUM] CWE-78 GHSA-vq73-vxpx-j3wr: An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1
An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-11-24
Published