CVE-2015-6371: Infoleak
Published Nov 19, 2015
·Updated
Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to read arbitrary files via crafted parameters to unspecified scripts, aka Bug ID CSCux10621.
Affected Software
1 affected component
Cisco Firepower Extensible Operating System=1.1\(1.160\)
Event History
Nov 19, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6371?
CVE-2015-6371 is classified as a medium severity vulnerability.
2
How do I fix CVE-2015-6371?
To mitigate CVE-2015-6371, upgrade to a patched version of the Cisco Firepower Extensible Operating System.
3
Who is affected by CVE-2015-6371?
CVE-2015-6371 affects Cisco Firepower 9000 devices running the Firepower Extensible Operating System version 1.1(1.160).
4
What type of attack can leverage CVE-2015-6371?
CVE-2015-6371 can be exploited by remote authenticated users to read arbitrary files on the affected system.
5
What are the potential consequences of CVE-2015-6371?
The exploitation of CVE-2015-6371 could lead to unauthorized access to sensitive files, compromising the confidentiality of the system.