Vulnerability Bulletins |
Cisco FireSIGHT Management Center GET Request Information Disclosure Vulnerability |
|
| Affected software | Cisco |
|
A vulnerability in the Cisco FireSIGHT Management Center could allow an authenticated, remote attacker to view sensitive information from the underlying operating system.The vulnerability is due to improper sanitation of user-supplied input. An attacker could exploit this vulnerability by sending special GET requests to a vulnerable device.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.This advisory is available at More info: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151211-fmc?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20FireSIGHT%20Management%20Center%20GET%20Request%20Information%20Disclo |
|






