Tracker / CVE-2021-34761
CVE-2021-34761
Media 4.4
A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite or append arbitrary data to system files using root-level privileges. The attacker must have administrative credentials on the device. This vulnerability is due to incomplete validation of user input for a specific CLI command. An attacker could exploit this vulnerability by authenticating to the device with administrative privileges and issuing a CLI command with crafted user parameters. A successful exploit could allow the attacker to overwrite or append arbitrary data to system files using root-level privileges.
Prodotti e versioni affette
| cisco | firepower_management_center_virtual_appliance |
|---|---|
| cisco | secure_firewall_threat_defense · 6.4.0 → 6.4.0.13 |
| cisco | secure_firewall_threat_defense · 6.6.0 → 6.6.5 |
| cisco | secure_firewall_threat_defense · 6.7.0 → 6.7.0.3 |
| cisco | secure_firewall_threat_defense · 7.0.0 → 7.0.1 |
| cisco | sourcefire_defense_center |
Analisi
Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.