← Back

CVE-2023-20114

nvd nist
Published: Nov 1, 2023Modified: Nov 26, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

A vulnerability in the file download feature of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to download arbitrary files from an affected system. This vulnerability is due to a lack of input sanitation. An attacker could exploit this vulnerability by sending a crafted HTTPS request. A successful exploit could allow the attacker to download arbitrary files from the affected system.

Affected (7)

1 product
Secure Firewall Management Center
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
From 6.2.3 to 6.2.3.18
From 6.4.0 to 6.4.0.16
From 6.6.0 to 6.6.7.1
From 7.0.0 to 7.0.5
From 7.1.0 to 7.1.0.3
From 7.2.0 to 7.2.3.1
From 7.3.0 to 7.3.1.1

Timeline

No history available yet.