CVE-2016-6411
Last modified
CVE-2016-6411 is a vulnerability of currently unknown severity. Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons between URLs and X.509 certificates, which allows remote attackers to bypass intended do-not-decrypt settings via a crafted URL, aka Bug ID CSCva50585.. EPSS estimates a 0.75% chance of exploitation in the next 30 days.
Description
Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons between URLs and X.509 certificates, which allows remote attackers to bypass intended do-not-decrypt settings via a crafted URL, aka Bug ID CSCva50585.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Firesight System Software | 6.0.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-6411?
How severe is CVE-2016-6411?
How do I fix CVE-2016-6411?
Are you affected by CVE-2016-6411?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
