PT-2020-2518 · Cisco · Cisco Firepower Management Center

Published

2020-05-06

·

Updated

2024-11-26

·

CVE-2020-3307

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Cisco Firepower Management Center (FMC) Software (affected versions not specified)
Description The issue is due to insufficient input validation in the web UI of the software, allowing a remote attacker to send a crafted HTTP request to an affected device. This could enable the attacker to write arbitrary entries to the log file on the device, potentially sending incorrect information to the system log.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2020-02529
CVE-2020-3307

Affected Products

Cisco Firepower Management Center