A CLI input-validation flaw lets an already-authenticated FMC or FTD Administrator break out of a locked-down command prompt into full root access on the underlying OS.
Posts tagged: Cisco
Cisco Secure Firewall Management Center Software HTML Injection Vulnerability
A low-privilege, read-only FMC analyst account can inject HTML into device-generated documents, enabling arbitrary file reads from the underlying OS and SSRF against other reachable systems.
Cisco Secure Firewall Management Center Software RADIUS Remote Code Execution Vulnerability
An unauthenticated attacker can smuggle shell commands through the login fields on Cisco Secure Firewall Management Center whenever RADIUS authentication is switched on, gaining high-privilege code execution.
Cisco Secure Firewall Management Center Software XPATH Injection Vulnerability
An XPATH injection flaw in Cisco FMC’s web management interface lets an already-authenticated admin pull sensitive data off the device, but only when lockdown mode is switched on.
Cisco Secure Firewall Management Center Software Cross-Site Scripting Vulnerability
An unauthenticated attacker who lures an FMC administrator into clicking crafted content can run script in that admin’s browser session inside the management interface, exposing session data.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 2100 Series IPv6 over IPsec Denial of Service Vulnerability
An unauthenticated attacker can crash a Firepower 2100 Series firewall by sending IPv6 packets over an established IPsec VPN tunnel, forcing a device reload and cutting off VPN and firewall service.
Cisco Secure Firewall Threat Defense Software Snort 3 Denial of Service Vulnerability
Crafted traffic sent through an FTD device running Snort 3 with an intrusion policy enabled can trap the inspection engine in an infinite loop, forcing a watchdog restart and a temporary inspection outage.
Cisco Secure Firewall Threat Defense Software Geolocation Remote Access VPN Bypass Vulnerability
A URL-parsing flaw in FTD’s new geolocation RA VPN feature lets an unauthenticated attacker craft HTTP traffic that slips past country-based allow/deny rules undetected.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 3100 and 4200 Series TLS 1.3 Cipher Denial of Service Vulnerability
A specific TLS 1.3 cipher on Firepower 3100/4200 ASA and FTD devices lets an authenticated remote user exhaust connection-handling resources, knocking out all encrypted traffic until the box is rebooted.
Cisco Catalyst Center Unauthenticated API Access Vulnerability
An unauthenticated API endpoint in Cisco Catalyst Center lets remote attackers read or rewrite the outgoing proxy configuration, potentially rerouting or intercepting outbound traffic.