Логотип exploitDog
bind:CVE-2020-3410
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-3410

Количество 3

Количество 3

nvd логотип

CVE-2020-3410

больше 5 лет назад

A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and access the FMC system. The attacker must have a valid CAC to initiate the access attempt. The vulnerability is due to incorrect session invalidation during CAC authentication. An attacker could exploit this vulnerability by performing a CAC-based authentication attempt to an affected system. A successful exploit could allow the attacker to access an affected system with the privileges of a CAC-authenticated user who is currently logged in.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-r86h-g4g8-qqmr

больше 3 лет назад

A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and access the FMC system. The attacker must have a valid CAC to initiate the access attempt. The vulnerability is due to incorrect session invalidation during CAC authentication. An attacker could exploit this vulnerability by performing a CAC-based authentication attempt to an affected system. A successful exploit could allow the attacker to access an affected system with the privileges of a CAC-authenticated user who is currently logged in.

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2020-05013

больше 5 лет назад

Уязвимость функции аутентификации Common Access Card (CAC) программного обеспечения администрирования сети Cisco Firepower Management Center (FMC), позволяющая нарушителю обойти процедуру аутентификации и получить доступ к системе FMC

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-3410

A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and access the FMC system. The attacker must have a valid CAC to initiate the access attempt. The vulnerability is due to incorrect session invalidation during CAC authentication. An attacker could exploit this vulnerability by performing a CAC-based authentication attempt to an affected system. A successful exploit could allow the attacker to access an affected system with the privileges of a CAC-authenticated user who is currently logged in.

CVSS3: 8.1
1%
Низкий
больше 5 лет назад
github логотип
GHSA-r86h-g4g8-qqmr

A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and access the FMC system. The attacker must have a valid CAC to initiate the access attempt. The vulnerability is due to incorrect session invalidation during CAC authentication. An attacker could exploit this vulnerability by performing a CAC-based authentication attempt to an affected system. A successful exploit could allow the attacker to access an affected system with the privileges of a CAC-authenticated user who is currently logged in.

CVSS3: 8.1
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-05013

Уязвимость функции аутентификации Common Access Card (CAC) программного обеспечения администрирования сети Cisco Firepower Management Center (FMC), позволяющая нарушителю обойти процедуру аутентификации и получить доступ к системе FMC

CVSS3: 8.1
1%
Низкий
больше 5 лет назад

Уязвимостей на страницу