René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

82 lines
2.5 KiB
JSON

{
"id": "CVE-2015-6380",
"sourceIdentifier": "ykramarz@cisco.com",
"published": "2015-11-24T04:59:03.007",
"lastModified": "2015-11-24T17:01:41.390",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622."
},
{
"lang": "es",
"value": "Una secuencia de comandos no especificada en la interfaz web en Cisco Firepower Extensible Operating System 1.1(1.160) en dispositivos Firepower 9000 permite a usuarios remotos autenticados ejecutar comandos del SO arbitrarios a trav\u00e9s de par\u00e1metros manipulados, tambi\u00e9n conocida como Bug ID CSCux10622."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 6.5
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-78"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:cisco:firepower_extensible_operating_system:1.1\\(1.160\\):*:*:*:*:*:*:*",
"matchCriteriaId": "5B9E0CD4-B484-4323-AC1D-A0817F0F8C49"
}
]
}
]
}
],
"references": [
{
"url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151123-fire",
"source": "ykramarz@cisco.com",
"tags": [
"Vendor Advisory"
]
}
]
}