CVE-2016-9193
Last modified
CVE-2016-9193 is a vulnerability of currently unknown severity. A vulnerability in the malicious file detection and blocking features of Cisco Firepower Management Center and Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass malware detection mechanisms on an affected system. Affected Products: Cisco Firepower Management Center and FireSIGHT System Software are affected when they are configured to use a file policy that has the Block Malware action. EPSS estimates a 1.96% chance of exploitation in the next 30 days.
Description
A vulnerability in the malicious file detection and blocking features of Cisco Firepower Management Center and Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass malware detection mechanisms on an affected system. Affected Products: Cisco Firepower Management Center and FireSIGHT System Software are affected when they are configured to use a file policy that has the Block Malware action. More Information: CSCvb27494. Known Affected Releases: 6.0.1.1 6.1.0.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Firesight System Software | 6.0.0 |
| Cisco | Firesight System Software | 6.0.0.0 |
| Cisco | Firesight System Software | 6.0.0.1 |
| Cisco | Firesight System Software | 6.0.1 |
| Cisco | Firesight System Software | 6.0.1.1 |
| Cisco | Firesight System Software | 6.1.0 |
| Cisco | Secure Firewall Management Center | 6.0.0 |
| Cisco | Secure Firewall Management Center | 6.0.0.0 |
| Cisco | Secure Firewall Management Center | 6.0.0.1 |
| Cisco | Secure Firewall Management Center | 6.0.1 |
| Cisco | Secure Firewall Management Center | 6.0.1.1 |
| Cisco | Secure Firewall Management Center | 6.1.0 |
References
- http://www.securityfocus.com/bid/94801Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1037421Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/94801Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1037421Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-9193?
How severe is CVE-2016-9193?
How do I fix CVE-2016-9193?
Are you affected by CVE-2016-9193?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
