T
he web console in Cisco Firepower Management Center 6.0.1 allows remote authenticated users to read arbitrary files via crafted parameters, aka Bug ID CSCva30376.
References
Configurations
History
26 Nov 2024, 16:09
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:cisco:secure_firewall_management_center:6.0.1:*:*:*:*:*:*:* | |
| First Time |
Cisco secure Firewall Management Center
|
21 Nov 2024, 02:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-ftmc2 - Vendor Advisory | |
| References | () http://www.securityfocus.com/bid/93421 - | |
| References | () https://blog.korelogic.com/blog/2016/10/10/virtual_appliance_spelunking - | |
| References | () https://www.exploit-db.com/exploits/40464/ - | |
| References | () https://www.korelogic.com/Resources/Advisories/KL-001-2016-006.txt - |
Information
Published : 2016-10-06 10:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-6435
Mitre link : CVE-2016-6435
CVE.ORG link : CVE-2016-6435
JSON object : View
Products Affected
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor