First published: Wed Nov 01 2023(Updated: )
A vulnerability in the inter-device communication mechanisms between devices that are running Cisco Firepower Threat Defense (FTD) Software and devices that are running Cisco Firepower Management (FMC) Software could allow an authenticated, local attacker to execute arbitrary commands with
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Secure Firewall Threat Defense | ||
Cisco Firepower Management Center (FMC) and Firepower Threat Defense (FTD) Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of Cisco-SA-FTD-FMC-Code-Inj-WSHrgz8L is critical due to the potential for arbitrary command execution by authenticated local attackers.
To fix Cisco-SA-FTD-FMC-Code-Inj-WSHrgz8L, update Cisco Firepower Threat Defense and Cisco Firepower Management Center to the latest patched versions.
The potential impacts include unauthorized execution of commands, which can compromise system integrity and confidentiality.
Devices running affected versions of Cisco Firepower Threat Defense (FTD) and Cisco Firepower Management Center (FMC) Software are vulnerable.
No, a local authenticated attacker is required to exploit Cisco-SA-FTD-FMC-Code-Inj-WSHrgz8L.