BDU:2025-11011
Уязвимость веб-интерфейса управления программного обеспечения администрирования сети Cisco Secure Firewall Management Center (ранее Cisco Firepower Management Center), позволяющая нарушителю выполнить произвольные команды
📄 Описание
Уязвимость веб-интерфейса управления программного обеспечения администрирования сети Cisco Secure Firewall Management Center (ранее Cisco Firepower Management Center) связана с недостаточной проверкой входных данных при обработке HTTP-пакетов. Эксплуатация уязвимости может позволить нарушителю, действующему удалённо, выполнить произвольные команды
🖥️ Уязвимое ПО
Cisco Systems Inc.
Наименование ПО: Cisco Firepower Management Center
Версия ПО: 6.2.3 (Cisco Firepower Management Center), 6.4.0 (Cisco Firepower Management Center), 6.2.3.6 (Cisco Firepower Management Center), 6.2.3.1 (Cisco Firepower Management Center), 6.2.3.2 (Cisco Firepower Management Center), 6.4.0.11 (Cisco Firepower Management Center), 6.6.0 (Cisco Firepower Management Center), 6.6.0.1 (Cisco Firepower Management Center), 6.6.1 (Cisco Firepower Management Center), 6.6.3 (Cisco Firepower Management Center), 6.6.4 (Cisco Firepower Management Center), 6.6.7 (Cisco Firepower Management Center), 7.0.0 (Cisco Firepower Management Center), 7.0.0.1 (Cisco Firepower Management Center), 7.0.1 (Cisco Firepower Management Center), 7.0.1.1 (Cisco Firepower Management Center), 7.0.2 (Cisco Firepower Management Center), 7.0.2.1 (Cisco Firepower Management Center), 7.0.3 (Cisco Firepower Management Center), 7.0.4 (Cisco Firepower Management Center), 7.2.0 (Cisco Firepower Management Center), 7.2.1 (Cisco Firepower Management Center), 6.2.3.3 (Cisco Firepower Management Center), 6.2.3.4 (Cisco Firepower Management Center), 6.2.3.5 (Cisco Firepower Management Center), 6.2.3.7 (Cisco Firepower Management Center), 6.2.3.9 (Cisco Firepower Management Center), 6.2.3.10 (Cisco Firepower Management Center), 6.2.3.11 (Cisco Firepower Management Center), 6.2.3.12 (Cisco Firepower Management Center), 6.2.3.13 (Cisco Firepower Management Center), 6.2.3.14 (Cisco Firepower Management Center), 6.2.3.15 (Cisco Firepower Management Center), 6.2.3.16 (Cisco Firepower Management Center), 6.2.3.17 (Cisco Firepower Management Center), 6.2.3.18 (Cisco Firepower Management Center), 6.4.0.1 (Cisco Firepower Management Center), 6.4.0.3 (Cisco Firepower Management Center), 6.4.0.2 (Cisco Firepower Management Center), 6.4.0.4 (Cisco Firepower Management Center), 6.4.0.5 (Cisco Firepower Management Center), 6.4.0.6 (Cisco Firepower Management Center), 6.4.0.7 (Cisco Firepower Management Center), 6.4.0.8 (Cisco Firepower Management Center), 6.4.0.9 (Cisco Firepower Management Center), 6.4.0.10 (Cisco Firepower Management Center), 6.4.0.12 (Cisco Firepower Management Center), 6.4.0.13 (Cisco Firepower Management Center), 6.4.0.14 (Cisco Firepower Management Center), 6.4.0.15 (Cisco Firepower Management Center), 6.4.0.16 (Cisco Firepower Management Center), 6.6.5 (Cisco Firepower Management Center), 6.6.5.1 (Cisco Firepower Management Center), 6.6.5.2 (Cisco Firepower Management Center), 6.6.7.1 (Cisco Firepower Management Center), 7.0.5 (Cisco Firepower Management Center), 7.1.0 (Cisco Firepower Management Center), 7.1.0.1 (Cisco Firepower Management Center), 7.1.0.2 (Cisco Firepower Management Center), 7.1.0.3 (Cisco Firepower Management Center), 7.2.2 (Cisco Firepower Management Center), 7.2.0.1 (Cisco Firepower Management Center), 7.2.3 (Cisco Firepower Management Center), 7.2.3.1 (Cisco Firepower Management Center), 7.3.0 (Cisco Firepower Management Center), 7.3.1 (Cisco Firepower Management Center), 7.3.1.1 (Cisco Firepower Management Center), 7.0.6 (Cisco Firepower Management Center), 7.2.4.1 (Cisco Firepower Management Center), 7.3.1.2 (Cisco Firepower Management Center), 7.2.4 (Cisco Firepower Management Center), 7.2.5 (Cisco Firepower Management Center), 7.4.0 (Cisco Firepower Management Center), 7.4.1 (Cisco Firepower Management Center), 7.4.1.1 (Cisco Firepower Management Center), 7.0.6.1 (Cisco Firepower Management Center), 7.0.6.2 (Cisco Firepower Management Center), 7.2.5.1 (Cisco Firepower Management Center), 7.2.6 (Cisco Firepower Management Center), 7.2.7 (Cisco Firepower Management Center), 7.2.5.2 (Cisco Firepower Management Center), 7.2.8 (Cisco Firepower Management Center), 7.2.8.1 (Cisco Firepower Management Center), 6.2.3.8 (Cisco Firepower Management Center), 6.4.0.17 (Cisco Firepower Management Center), 6.4.0.18 (Cisco Firepower Management Center), 6.6.7.2 (Cisco Firepower Management Center), 7.0.6.3 (Cisco Firepower Management Center), 7.4.2 (Cisco Firepower Management Center), 7.4.2.1 (Cisco Firepower Management Center), 7.0.7 (Cisco Firepower Management Center), 7.2.9 (Cisco Firepower Management Center), 7.4.2.2 (Cisco Firepower Management Center), 7.6.0 (Cisco Firepower Management Center), 7.7.0 (Cisco Firepower Management Center)
Тип ПО: ПО программно-аппаратных средств защиты
ОС / платформа: —
⚙️ Технические сведения
📊 CVSS
CVSS 2.0
AV:N/AC:L/Au:S/C:N/I:C/A:N
CVSS 3.0
AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
⚠️ Уровень опасности
Средний уровень опасности (базовая оценка CVSS 2.0 составляет 6,8)
Средний уровень опасности (базовая оценка CVSS 3.1 составляет 4,9)
Средний уровень опасности (базовая оценка CVSS 3.1 составляет 4,9)
🔗 Источники и меры
🏷️ Идентификаторы
📅 Даты