9.1

CVE-2016-6394

Session fixation vulnerability in Cisco Firepower Management Center and Cisco FireSIGHT System Software through 6.1.0 allows remote attackers to hijack web sessions via a session identifier, aka Bug ID CSCuz80503.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoFiresight System Software Version5.2.0
CiscoFiresight System Software Version5.2.0.1
CiscoFiresight System Software Version5.2.0.2
CiscoFiresight System Software Version5.2.0.3
CiscoFiresight System Software Version5.2.0.4
CiscoFiresight System Software Version5.2.0.5
CiscoFiresight System Software Version5.2.0.6
CiscoFiresight System Software Version5.2.0.8
CiscoFiresight System Software Version5.3.0
CiscoFiresight System Software Version5.3.0.1
CiscoFiresight System Software Version5.3.0.2
CiscoFiresight System Software Version5.3.0.3
CiscoFiresight System Software Version5.3.0.4
CiscoFiresight System Software Version5.3.0.5
CiscoFiresight System Software Version5.3.0.6
CiscoFiresight System Software Version5.3.0.7
CiscoFiresight System Software Version5.3.1
CiscoFiresight System Software Version5.3.1.1
CiscoFiresight System Software Version5.3.1.2
CiscoFiresight System Software Version5.3.1.3
CiscoFiresight System Software Version5.3.1.4
CiscoFiresight System Software Version5.3.1.5
CiscoFiresight System Software Version5.3.1.7
CiscoFiresight System Software Version5.4.0
CiscoFiresight System Software Version5.4.0.1
CiscoFiresight System Software Version5.4.0.2
CiscoFiresight System Software Version5.4.0.3
CiscoFiresight System Software Version5.4.0.4
CiscoFiresight System Software Version5.4.0.5
CiscoFiresight System Software Version5.4.0.6
CiscoFiresight System Software Version5.4.1
CiscoFiresight System Software Version5.4.1.2
CiscoFiresight System Software Version5.4.1.3
CiscoFiresight System Software Version5.4.1.4
CiscoFiresight System Software Version6.0.0
CiscoFiresight System Software Version6.0.0.1
CiscoFiresight System Software Version6.0.1
CiscoFiresight System Software Version6.1.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.503
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.1 3.9 5.2
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvd@nist.gov 5.8 8.6 4.9
AV:N/AC:M/Au:N/C:P/I:P/A:N