CVE-2015-6411: Infoleak
Cisco FirePOWER Management Center 5.4.1.3, 6.0.0, and 6.0.1 provides verbose responses to requests for help files, which allows remote attackers to obtain potentially sensitive version information by reading an unspecified field, aka Bug ID CSCux37061.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6411?
CVE-2015-6411 has a medium severity rating due to the potential exposure of sensitive version information.
How do I fix CVE-2015-6411?
To fix CVE-2015-6411, update Cisco FirePOWER Management Center to the latest version that addresses this vulnerability.
What versions are affected by CVE-2015-6411?
CVE-2015-6411 affects Cisco FirePOWER Management Center versions 5.4.1.3, 6.0.0, and 6.0.1.
Can CVE-2015-6411 be exploited remotely?
Yes, CVE-2015-6411 can be exploited remotely, allowing attackers to retrieve sensitive information.
What type of information can an attacker gather from CVE-2015-6411?
An attacker can gather potentially sensitive version information through the verbose responses of help file requests related to CVE-2015-6411.