5

CVE-2015-6427

Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL session that is mishandled after decryption, aka Bug ID CSCux53437.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoFiresight System Software Version5.3.0
CiscoFiresight System Software Version5.3.0.1
CiscoFiresight System Software Version5.3.0.2
CiscoFiresight System Software Version5.3.1
CiscoFiresight System Software Version5.3.1.1
CiscoFiresight System Software Version5.3.1.2
CiscoFiresight System Software Version5.3.1.3
CiscoFiresight System Software Version5.3.1.4
CiscoFiresight System Software Version5.3.1.5
CiscoFiresight System Software Version5.3.1.7
CiscoFiresight System Software Version5.4.0
CiscoFiresight System Software Version5.4.0.1
CiscoFiresight System Software Version5.4.0.4
CiscoFiresight System Software Version5.4.1
CiscoFiresight System Software Version5.4.1.2
CiscoFiresight System Software Version5.4.1.3
CiscoFiresight System Software Version5.4.1.4
CiscoFiresight System Software Version6.0.0
CiscoFiresight System Software Version6.0.0.1
CiscoFiresight System Software Version6.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.4% 0.596
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N