Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37wp-r5gr-q42h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability in Cisco Firepower Device Manager (FDM) On-Box software could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by uploading a malicious file to an affected device. A successful exploit could allow the attacker to overwrite arbitrary files on as well as modify the underlying operating system of an affected device.

A vulnerability in Cisco Firepower Device Manager (FDM) On-Box software could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by uploading a malicious file to an affected device. A successful exploit could allow the attacker to overwrite arbitrary files on as well as modify the underlying operating system of an affected device.

EPSS

Процентиль: 75%
0.00878
Низкий

Связанные уязвимости

CVSS3: 7.2
nvd
почти 6 лет назад

A vulnerability in Cisco Firepower Device Manager (FDM) On-Box software could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by uploading a malicious file to an affected device. A successful exploit could allow the attacker to overwrite arbitrary files on as well as modify the underlying operating system of an affected device.

CVSS3: 7.2
fstec
почти 6 лет назад

Уязвимость программного обеспечения для управления межсетевыми экранами Cisco Firepower Device Manager On-Box, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю перезаписать произвольные файлы в базовой операционной системе уязвимого устройства

EPSS

Процентиль: 75%
0.00878
Низкий