CVE-2020-3302

A vulnerability in the web UI of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to overwrite files on the file system of an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by uploading a crafted file to the web UI on an affected device. A successful exploit could allow the attacker to overwrite files on the file system of the affected device.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:secure_firewall_management_center:*:*:*:*:*:*:*:*

History

26 Nov 2024, 16:09

Type Values Removed Values Added
First Time Cisco secure Firewall Management Center
CPE cpe:2.3:a:cisco:firepower_management_center:*:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_management_center:*:*:*:*:*:*:*:*
CPE cpe:2.3:a:cisco:firepower_management_center:*:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_management_center:*:*:*:*:*:*:*:*
First Time Cisco secure Firewall Management Center

21 Nov 2024, 05:30

Type Values Removed Values Added
References () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmcai-z5dQObVN - Vendor Advisory () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmcai-z5dQObVN - Vendor Advisory

Information

Published : 2020-05-06 17:15

Updated : 2024-11-26 16:09


NVD link : CVE-2020-3302

Mitre link : CVE-2020-3302

CVE.ORG link : CVE-2020-3302


JSON object : View

Products Affected

cisco

  • secure_firewall_management_center
CWE
CWE-20

Improper Input Validation