CVE-2016-1342Sensitive Information Exposure in Cisco Secure Firewall Management Center

Severity
5.3MEDIUMNVD
EPSS
0.5%
top 34.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 26
Latest updateMay 17

Description

The device login page in Cisco FirePOWER Management Center 5.3 through 6.0.0.1 allows remote attackers to obtain potentially sensitive software-version information by reading help files, aka Bug ID CSCuy36654.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-cj62-hc3c-q4gw: The device login page in Cisco FirePOWER Management Center 52022-05-17
CVEList
CVE-2016-1342: The device login page in Cisco FirePOWER Management Center 52016-02-26

📋Vendor Advisories

1
Cisco
Cisco FirePOWER Management Center Unauthenticated Information Disclosure Vulnerability2016-02-25
CVE-2016-1342 — Sensitive Information Exposure in Cisco | cvebase