Lucene search

K
nvd[email protected]NVD:CVE-2015-0706
HistoryApr 23, 2015 - 2:00 a.m.

CVE-2015-0706

2015-04-2302:00:16
web.nvd.nist.gov
5

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

39.7%

Open redirect vulnerability in Cisco FireSIGHT System Software 5.3.1.1, 5.3.1.2, and 6.0.0 in FireSIGHT Management Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted HTTP header, aka Bug IDs CSCut06060, CSCut06056, and CSCus98966.

Affected configurations

Nvd
Node
ciscofiresight_system_softwareMatch5.3.1.1
OR
ciscofiresight_system_softwareMatch5.3.1.2
OR
ciscofiresight_system_softwareMatch6.0.0
VendorProductVersionCPE
ciscofiresight_system_software5.3.1.1cpe:2.3:a:cisco:firesight_system_software:5.3.1.1:*:*:*:*:*:*:*
ciscofiresight_system_software5.3.1.2cpe:2.3:a:cisco:firesight_system_software:5.3.1.2:*:*:*:*:*:*:*
ciscofiresight_system_software6.0.0cpe:2.3:a:cisco:firesight_system_software:6.0.0:*:*:*:*:*:*:*

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

39.7%

Related for NVD:CVE-2015-0706