Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2016-6434 - CERT CVE
CVE-2016-6434
ID
CVE-2016-6434
Sažetak
Cisco Firepower Management Center 6.0.1 has hardcoded database credentials, which allows local users to obtain sensitive information by leveraging CLI access, aka Bug ID CSCva30370.
Reference
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-ftmc1
http://www.securityfocus.com/bid/93412
https://blog.korelogic.com/blog/2016/10/10/virtual_appliance_spelunking
https://www.exploit-db.com/exploits/40465/
https://www.korelogic.com/Resources/Advisories/KL-001-2016-005.txt
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-ftmc1
http://www.securityfocus.com/bid/93412
https://blog.korelogic.com/blog/2016/10/10/virtual_appliance_spelunking
https://www.exploit-db.com/exploits/40465/
https://www.korelogic.com/Resources/Advisories/KL-001-2016-005.txt
CVSS
Base:
4.6
Impact:
6.4
Exploitability:
3.9
Pristup
Vektor
Složenost
Autentikacija
LOCAL
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
PARTIAL
PARTIAL
PARTIAL
CVSS vektor
AV:L/AC:L/Au:N/C:P/I:P/A:P
Zadnje važnije ažuriranje
26-11-2024 - 16:09
Objavljeno
06-10-2016 - 10:59