CVE-2015-0739: Input Validation
The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5.3.0 on Sourcefire 3D Sensor devices allows remote authenticated users to perform arbitrary Baseboard Management Controller (BMC) file uploads via unspecified vectors, aka Bug ID CSCus87938.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0739?
CVE-2015-0739 has a medium severity rating as it allows remote authenticated users to upload arbitrary files.
How do I fix CVE-2015-0739?
To address CVE-2015-0739, it is recommended to upgrade to a fixed version of Cisco FireSIGHT System Software.
Who is affected by CVE-2015-0739?
CVE-2015-0739 affects remote authenticated users of Cisco FireSIGHT System Software 5.3.0.
What does CVE-2015-0739 allow an attacker to do?
CVE-2015-0739 allows an attacker to perform arbitrary Baseboard Management Controller file uploads.
Is CVE-2015-0739 present in other Cisco Sourcefire sensor models?
No, CVE-2015-0739 is specific to Cisco FireSIGHT System Software 5.3.0 and does not affect other Sourcefire sensor models.