CVE-2017-6766
- EPSS 0.15%
- Published 07.08.2017 06:29:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the Secure Sockets Layer (SSL) Decryption and Inspection feature of Cisco Firepower System Software 5.4.0, 5.4.1, 6.0.0, 6.1.0, 6.2.0, 6.2.1, and 6.2.2 could allow an unauthenticated, remote attacker to bypass the SSL policy for de...
CVE-2017-6735
- EPSS 0.08%
- Published 10.07.2017 20:29:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arbitrary code on a targeted system. More Information: CSCvc91092. Known Affected Releases: 6.2.0 6.2.1...
CVE-2016-9193
- EPSS 0.38%
- Published 14.12.2016 00:59:16
- Last modified 12.04.2025 10:46:40
A vulnerability in the malicious file detection and blocking features of Cisco Firepower Management Center and Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass malware detection mechanisms on an affected syste...
CVE-2016-6471
- EPSS 0.42%
- Published 14.12.2016 00:59:11
- Last modified 12.04.2025 10:46:40
A vulnerability in the web-based management interface of Cisco Firepower Management Center running FireSIGHT System software could allow an authenticated, remote attacker to view the Remote Storage Password. More Information: CSCvb19366. Known Affect...
CVE-2016-6460
- EPSS 0.23%
- Published 19.11.2016 03:03:03
- Last modified 12.04.2025 10:46:40
A vulnerability in the FTP Representational State Transfer Application Programming Interface (REST API) for Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass FTP malware detection rules and download malware ove...
CVE-2016-6417
- EPSS 0.13%
- Published 05.10.2016 17:59:06
- Last modified 12.04.2025 10:46:40
Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Management Center allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCva21636.
CVE-2016-6420
- EPSS 0.05%
- Published 05.10.2016 10:59:20
- Last modified 12.04.2025 10:46:40
Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to bypass authorization checks and gain privileges via a crafted HTTP request, aka Bug ID CSCur25467.
CVE-2016-6411
- EPSS 0.21%
- Published 24.09.2016 01:59:04
- Last modified 12.04.2025 10:46:40
Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons between URLs and X.509 certificates, which allows remote attackers to bypass intended do-not-decrypt settings via a crafted URL, aka Bug ID CSCva50585.
CVE-2016-6396
- EPSS 0.43%
- Published 12.09.2016 10:59:09
- Last modified 12.04.2025 10:46:40
Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking options are enabled, allow remote attackers to bypass malware detection via crafted fields in HTTP headers, aka Bug ID CSCuz44482.
CVE-2016-6395
- EPSS 0.22%
- Published 12.09.2016 10:59:08
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1 allows remote authenticated users to inject arbitrary web script or HTML via a cra...