VendorsCiscofirepower_management_center_virtual_appliance6.1.0
Vulnerabilities

Cisco Firepower Management Center Virtual Appliance 6.1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2018-0365
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of the affected device. An attacker could exploit this vulnerability by persuading a user of the interface to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions on the targeted device via a web browser and with the privileges of the user. Cisco Bug IDs: CSCvb19750.
Published 2018-06-21 · Modified
8.8EPSS 0.009
CVE-2021-34755
Cisco Firepower Threat Defense Software Command Injection Vulnerabilities
Published 2021-10-27 · Modified
7.8EPSS 0.003
CVE-2021-34756
Cisco Firepower Threat Defense Software Command Injection Vulnerabilities
Published 2021-10-27 · Modified
7.8EPSS 0.003
CVE-2021-34764
Cisco Firepower Management Center Software Cross-Site Scripting and Open Redirect Vulnerabilities
Published 2021-10-27 · Modified
6.1EPSS 0.006
CVE-2021-34763
Cisco Firepower Management Center Software Cross-Site Scripting and Open Redirect Vulnerabilities
Published 2021-10-27 · Modified
4.8EPSS 0.005