Lucene search

K
ciscoCiscoCISCO-SA-FMC-INFODISC-RJDKTM6F
HistoryJan 13, 2021 - 4:00 p.m.

Cisco Firepower Management Center Information Disclosure Vulnerability

2021-01-1316:00:00
tools.cisco.com
34
cisco
firepower management center
information disclosure
vulnerability
proxy server
credentials
weak permissions
software
update

EPSS

0

Percentile

5.1%

A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an authenticated, local attacker to view credentials for a configured proxy server.

The vulnerability is due to clear-text storage and weak permissions of related configuration files. An attacker could exploit this vulnerability by accessing the CLI of the affected software and viewing the contents of the affected files. A successful exploit could allow the attacker to view the credentials that are used to access the proxy server.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f”]

Affected configurations

Vulners
Node
ciscofirepower_management_centerMatch5.4
OR
ciscofirepower_management_centerMatch6.0
OR
ciscofirepower_management_centerMatch5.3
OR
ciscofirepower_management_centerMatch6.1
OR
ciscofirepower_management_centerMatch5.2
OR
ciscofirepower_management_centerMatch4.10
OR
ciscofirepower_management_centerMatch2.9
OR
ciscofirepower_management_centerMatch6.2
OR
ciscofirepower_management_centerMatch6.3
OR
ciscofirepower_management_centerMatch6.4
OR
ciscofirepower_management_centerMatch6.5
OR
ciscofirepower_management_centerMatch6.6
OR
ciscocisco_firepower_management_center_baseMatchany
OR
ciscofirepower_management_centerMatch5.4.1.3
OR
ciscofirepower_management_centerMatch5.4.1.5
OR
ciscofirepower_management_centerMatch5.4.1.4
OR
ciscofirepower_management_centerMatch5.4.1.2
OR
ciscofirepower_management_centerMatch5.4.1.1
OR
ciscofirepower_management_centerMatch5.4.1
OR
ciscofirepower_management_centerMatch5.4.0
OR
ciscofirepower_management_centerMatch5.4.0.2
OR
ciscofirepower_management_centerMatch5.4.1.6
OR
ciscofirepower_management_centerMatch5.4.1.9
OR
ciscocisco_firepower_management_center_baseMatchany
OR
ciscofirepower_management_centerMatch6.0.0
OR
ciscofirepower_management_centerMatch6.0.1
OR
ciscofirepower_management_centerMatch6.0.0.1
OR
ciscofirepower_management_centerMatch6.0.0.0
OR
ciscofirepower_management_centerMatch6.0.1.1
OR
ciscofirepower_management_centerMatch6.0.1.3
OR
ciscofirepower_management_centerMatch6.0.1.2
OR
ciscofirepower_management_centerMatch6.0.1.4
OR
ciscofirepower_management_centerMatch5.3.0.2
OR
ciscofirepower_management_centerMatch5.3.1.6
OR
ciscofirepower_management_centerMatch5.3.1.5
OR
ciscofirepower_management_centerMatch5.3.1.4
OR
ciscofirepower_management_centerMatch5.3.1.3
OR
ciscofirepower_management_centerMatch5.3.0.3
OR
ciscofirepower_management_centerMatch5.3.0
OR
ciscofirepower_management_centerMatch5.3.1
OR
ciscofirepower_management_centerMatch5.3.0.4
OR
ciscofirepower_management_centerMatch5.3.1.7
OR
ciscofirepower_management_centerMatch6.1.0
OR
ciscofirepower_management_centerMatch6.1.0.2
OR
ciscofirepower_management_centerMatch6.1.0.1
OR
ciscofirepower_management_centerMatch6.1.0.3
OR
ciscofirepower_management_centerMatch6.1.0.4
OR
ciscofirepower_management_centerMatch6.1.0.5
OR
ciscofirepower_management_centerMatch6.1.0.6
OR
ciscofirepower_management_centerMatch6.1.0.7
OR
ciscocisco_firepower_management_center_baseMatchany
OR
ciscofirepower_management_centerMatch5.2.0
OR
ciscocisco_firepower_management_center_baseMatchany
OR
ciscofirepower_management_centerMatch4.10.3
OR
ciscofirepower_management_centerMatch4.10.3.9
OR
ciscofirepower_management_centerMatch2.9.0
OR
ciscofirepower_management_centerMatch2.9.7.10
OR
ciscocisco_firepower_management_center_baseMatchany
OR
ciscofirepower_management_centerMatch6.2.0
OR
ciscofirepower_management_centerMatch6.2.1
OR
ciscofirepower_management_centerMatch6.2.2
OR
ciscofirepower_management_centerMatch6.2.0.2
OR
ciscofirepower_management_centerMatch6.2.0.1
OR
ciscofirepower_management_centerMatch6.2.0.3
OR
ciscofirepower_management_centerMatch6.2.0.4
OR
ciscofirepower_management_centerMatch6.2.0.5
OR
ciscofirepower_management_centerMatch6.2.0.6
OR
ciscofirepower_management_centerMatch6.2.0.7
OR
ciscofirepower_management_centerMatch6.2.2.1
OR
ciscofirepower_management_centerMatch6.2.2.2
OR
ciscofirepower_management_centerMatch6.2.2.3
OR
ciscofirepower_management_centerMatch6.2.2.4
OR
ciscofirepower_management_centerMatch6.2.3
OR
ciscofirepower_management_centerMatch6.2.3.1
OR
ciscofirepower_management_centerMatch6.2.3.2
OR
ciscofirepower_management_centerMatch6.2.3.3
OR
ciscofirepower_management_centerMatch6.2.3.4
OR
ciscofirepower_management_centerMatch6.2.3.5
OR
ciscofirepower_management_centerMatch6.2.3.6
OR
ciscofirepower_management_centerMatch6.2.3.7
OR
ciscofirepower_management_centerMatch6.2.3.9
OR
ciscofirepower_management_centerMatch6.2.3.10
OR
ciscofirepower_management_centerMatch6.2.3.11
OR
ciscofirepower_management_centerMatch6.2.3.12
OR
ciscofirepower_management_centerMatch6.2.3.13
OR
ciscofirepower_management_centerMatch6.2.3.14
OR
ciscofirepower_management_centerMatch6.2.2.5
OR
ciscofirepower_management_centerMatch6.2.3.15
OR
ciscofirepower_management_centerMatch6.2.3.8
OR
ciscofirepower_management_centerMatch6.2.3.16
OR
ciscofirepower_management_centerMatch6.3.0
OR
ciscofirepower_management_centerMatch6.3.0.1
OR
ciscofirepower_management_centerMatch6.3.0.2
OR
ciscofirepower_management_centerMatch6.3.0.3
OR
ciscofirepower_management_centerMatch6.3.0.4
OR
ciscofirepower_management_centerMatch6.3.0.5
OR
ciscofirepower_management_centerMatch6.4.0
OR
ciscofirepower_management_centerMatch6.4.0.1
OR
ciscofirepower_management_centerMatch6.4.0.3
OR
ciscofirepower_management_centerMatch6.4.0.2
OR
ciscofirepower_management_centerMatch6.4.0.4
OR
ciscofirepower_management_centerMatch6.4.0.5
OR
ciscofirepower_management_centerMatch6.4.0.6
OR
ciscofirepower_management_centerMatch6.4.0.7
OR
ciscofirepower_management_centerMatch6.4.0.8
OR
ciscofirepower_management_centerMatch6.4.0.9
OR
ciscofirepower_management_centerMatch6.4.0.10
OR
ciscofirepower_management_centerMatch6.5.0
OR
ciscofirepower_management_centerMatch6.5.0.1
OR
ciscofirepower_management_centerMatch6.5.0.2
OR
ciscofirepower_management_centerMatch6.5.0.3
OR
ciscofirepower_management_centerMatch6.5.0.4
OR
ciscofirepower_management_centerMatch6.6.0
OR
ciscofirepower_management_centerMatch6.6.0.1
OR
ciscofirepower_management_centerMatch6.6.1
VendorProductVersionCPE
ciscofirepower_management_center5.4cpe:2.3:a:cisco:firepower_management_center:5.4:*:*:*:*:*:*:*
ciscofirepower_management_center6.0cpe:2.3:a:cisco:firepower_management_center:6.0:*:*:*:*:*:*:*
ciscofirepower_management_center5.3cpe:2.3:a:cisco:firepower_management_center:5.3:*:*:*:*:*:*:*
ciscofirepower_management_center6.1cpe:2.3:a:cisco:firepower_management_center:6.1:*:*:*:*:*:*:*
ciscofirepower_management_center5.2cpe:2.3:a:cisco:firepower_management_center:5.2:*:*:*:*:*:*:*
ciscofirepower_management_center4.10cpe:2.3:a:cisco:firepower_management_center:4.10:*:*:*:*:*:*:*
ciscofirepower_management_center2.9cpe:2.3:a:cisco:firepower_management_center:2.9:*:*:*:*:*:*:*
ciscofirepower_management_center6.2cpe:2.3:a:cisco:firepower_management_center:6.2:*:*:*:*:*:*:*
ciscofirepower_management_center6.3cpe:2.3:a:cisco:firepower_management_center:6.3:*:*:*:*:*:*:*
ciscofirepower_management_center6.4cpe:2.3:a:cisco:firepower_management_center:6.4:*:*:*:*:*:*:*
Rows per page:
1-10 of 1111

EPSS

0

Percentile

5.1%

Related for CISCO-SA-FMC-INFODISC-RJDKTM6F