vendor:
Firepower Threat Management Console
by:
KoreLogic
8,8
CVSS
HIGH
Arbitrary Code Execution
434, 94
CWE
Product Name: Firepower Threat Management Console
Affected Version From: Cisco Fire Linux OS 6.0.1 (build 37/build 1213)
Affected Version To: Cisco Fire Linux OS 6.0.1 (build 37/build 1213)
Patch Exists: YES
Related CWE: CVE-2016-6433
CPE: o:cisco:firepower_threat_management_console
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Embedded Linux
2016
Cisco Firepower Threat Management Console Remote Command Execution Leading to Root Access
An authenticated user can run arbitrary system commands as the www user which leads to root. A valid session and CSRF token is required. The webserver runs as a non-root user which is permitted to sudo commands as root with no password.
Mitigation:
Ensure that the web server is running as a non-root user and is not permitted to sudo commands as root with no password.