CVE-2015-6373: CSRF
Published Nov 18, 2015
·Updated
Cross-site request forgery (CSRF) vulnerability in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCux10611.
Affected Software
1 affected component
Cisco Firepower Extensible Operating System=1.1\(1.160\)
Event History
Nov 18, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6373?
CVE-2015-6373 is classified as a medium severity vulnerability due to its potential to allow unauthorized access.
2
How do I fix CVE-2015-6373?
To fix CVE-2015-6373, update Cisco Firepower Extensible Operating System to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2015-6373?
CVE-2015-6373 affects Cisco Firepower Extensible Operating System version 1.1(1.160) on Firepower 9000 devices.
4
What type of vulnerability is CVE-2015-6373?
CVE-2015-6373 is a cross-site request forgery (CSRF) vulnerability.
5
Can CVE-2015-6373 lead to user account hijacking?
Yes, CVE-2015-6373 allows remote attackers to hijack the authentication of arbitrary users.