HIGH · 7.2

CVE-2015-6370

The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input...

Vulnerability Description

The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input, aka Bug ID CSCux10578.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoFirepower Extensible Operating System1.1\(1.160\)

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-6370?

CVE-2015-6370 is a vulnerability with a CVSS score of 7.2 (HIGH). The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute arbitrary OS commands as root via crafted CLI input...

How severe is CVE-2015-6370?

CVE-2015-6370 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-6370?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Firepower Extensible Operating System.