CVE-2016-6449: High severity cisco advanced malware protection for endpoints (amp for endpoints) vulnerability
A vulnerability in the system management of certain FireAMP system processes in Cisco FireAMP Connector Endpoint software could allow an authenticated, local attacker to stop certain protected FireAMP processes without requiring a password. Stopping certain critical processes could cause a denial of service (DoS) condition, and certain security features could no longer be available. More Information: CSCvb40597. Known Affected Releases: 1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6449?
CVE-2016-6449 is rated as a medium severity vulnerability.
How do I fix CVE-2016-6449?
To mitigate CVE-2016-6449, update Cisco FireAMP Connector Endpoint software to version 4.4.2.10201 or later.
Who is affected by CVE-2016-6449?
CVE-2016-6449 affects users running Cisco FireAMP Connector Endpoint software version 4.4.0 and 4.4.2.10200.
What can an attacker do with CVE-2016-6449?
An authenticated local attacker could stop certain protected FireAMP processes, potentially leading to a denial of service.
Is there a workaround for CVE-2016-6449?
There is no documented workaround for CVE-2016-6449; updating the software is the recommended solution.