PT-2016-4770 · Cisco · Cisco Firepower Management Center
CVE-2016-1413
·
Publicado
2016-05-28
·
Atualizado
2024-11-26
CVSS v3.1
6.5
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco Firepower Management Center versions 5.4.0 through 6.0.0.1
Description
The issue allows remote authenticated users to modify pages by placing crafted code in a parameter value.
Recommendations
For versions 5.4.0 through 6.0.0.1, consider restricting access to the web interface until a fix is available. Avoid using crafted code in parameter values to minimize the risk of exploitation.
Correção
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Firepower Management Center