PT-2016-6885 · Cisco · Firesight System+1

Publicado

2016-09-24

·

Atualizado

2017-07-30

·

CVE-2016-6411

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Cisco Firepower Management Center and FireSIGHT System Software version 6.0.1
Description The issue arises from the mishandling of comparisons between URLs and X.509 certificates, allowing remote attackers to bypass intended do-not-decrypt settings via a crafted URL.
Recommendations For Cisco Firepower Management Center and FireSIGHT System Software version 6.0.1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-6411

Produtos afetados

Cisco Firepower Management Center
Firesight System