cvelist/2021/34xxx/CVE-2021-34755.json

89 lines
2.8 KiB
JSON
Raw Normal View History

2021-06-15 20:01:09 +00:00
{
"CVE_data_meta": {
2021-10-27 18:31:47 +00:00
"ASSIGNER": "psirt@cisco.com",
"DATE_PUBLIC": "2021-10-27T16:00:00",
2021-06-15 20:01:09 +00:00
"ID": "CVE-2021-34755",
2021-10-27 18:31:47 +00:00
"STATE": "PUBLIC",
"TITLE": "Cisco Firepower Threat Defense Software Command Injection Vulnerabilities"
2021-06-15 20:01:09 +00:00
},
2021-10-27 18:31:47 +00:00
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "Cisco Firepower Threat Defense Software ",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "Cisco"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
2021-06-15 20:01:09 +00:00
"description": {
"description_data": [
{
"lang": "eng",
2021-10-27 20:00:59 +00:00
"value": "Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges. For more information about these vulnerabilities, see the Details section of this advisory."
2021-06-15 20:01:09 +00:00
}
]
2021-10-27 18:31:47 +00:00
},
"exploit": [
{
"lang": "eng",
"value": "The Cisco PSIRT is not aware of any public announcements or malicious use of the vulnerability that is described in this advisory. "
}
],
"impact": {
"cvss": {
"baseScore": "7.8",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H ",
"version": "3.0"
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-20"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "20211027 Cisco Firepower Threat Defense Software Command Injection Vulnerabilities",
"refsource": "CISCO",
"url": "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-cmdinject-FmzsLN8"
}
]
},
"source": {
"advisory": "cisco-sa-ftd-cmdinject-FmzsLN8",
"defect": [
[
"CSCvx86283",
"CSCvy16559",
"CSCvy16573",
"CSCvy19225"
]
],
"discovery": "INTERNAL"
2021-06-15 20:01:09 +00:00
}
2021-10-27 20:00:59 +00:00
}