ID

VAR-201612-0359


CVE

CVE-2016-9193


TITLE

Cisco Firepower Management Center and FireSIGHT system Vulnerabilities that bypass software malware detection mechanisms

Trust: 0.8

sources: JVNDB: JVNDB-2016-006315

DESCRIPTION

A vulnerability in the malicious file detection and blocking features of Cisco Firepower Management Center and Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass malware detection mechanisms on an affected system. Affected Products: Cisco Firepower Management Center and FireSIGHT System Software are affected when they are configured to use a file policy that has the Block Malware action. More Information: CSCvb27494. Known Affected Releases: 6.0.1.1 6.1.0. An attacker can exploit this issue to bypass security restrictions and perform unauthorized actions. This may aid in further attacks. This issue is being tracked by Cisco Bug ID CSCvb27494

Trust: 1.98

sources: NVD: CVE-2016-9193 // JVNDB: JVNDB-2016-006315 // BID: 94801 // VULHUB: VHN-98013

AFFECTED PRODUCTS

vendor:ciscomodel:firesight system softwarescope:eqversion:6.0.0

Trust: 2.4

vendor:ciscomodel:firesight system softwarescope:eqversion:6.0.0.0

Trust: 2.4

vendor:ciscomodel:firesight system softwarescope:eqversion:6.0.0.1

Trust: 2.4

vendor:ciscomodel:firesight system softwarescope:eqversion:6.0.1

Trust: 1.8

vendor:ciscomodel:firesight system softwarescope:eqversion:6.0.1.1

Trust: 1.8

vendor:ciscomodel:firesight system softwarescope:eqversion:6.1.0

Trust: 1.8

vendor:ciscomodel:firepower management centerscope:eqversion:6.0.0.1

Trust: 1.4

vendor:ciscomodel:firepower management centerscope:eqversion:6.0.1

Trust: 1.4

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.1.0

Trust: 1.0

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.0.1.1

Trust: 1.0

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.0.0.1

Trust: 1.0

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.0.0

Trust: 1.0

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.0.0.0

Trust: 1.0

vendor:ciscomodel:secure firewall management centerscope:eqversion:6.0.1

Trust: 1.0

vendor:ciscomodel:firepower management centerscope:eqversion:6.0.0

Trust: 0.8

vendor:ciscomodel:firepower management centerscope:eqversion:6.0.0.0

Trust: 0.8

vendor:ciscomodel:firepower management centerscope:eqversion:6.0.1.1

Trust: 0.8

vendor:ciscomodel:firepower management centerscope:eqversion:6.1.0

Trust: 0.8

vendor:ciscomodel:firesight system softwarescope:eqversion:0

Trust: 0.3

vendor:ciscomodel:firepower management centerscope:eqversion:0

Trust: 0.3

sources: BID: 94801 // JVNDB: JVNDB-2016-006315 // CNNVD: CNNVD-201612-218 // NVD: CVE-2016-9193

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2016-9193
value: HIGH

Trust: 1.0

NVD: CVE-2016-9193
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201612-218
value: MEDIUM

Trust: 0.6

VULHUB: VHN-98013
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2016-9193
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-98013
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2016-9193
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: HIGH
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 3.6
version: 3.0

Trust: 1.8

sources: VULHUB: VHN-98013 // JVNDB: JVNDB-2016-006315 // CNNVD: CNNVD-201612-218 // NVD: CVE-2016-9193

PROBLEMTYPE DATA

problemtype:CWE-20

Trust: 1.9

sources: VULHUB: VHN-98013 // JVNDB: JVNDB-2016-006315 // NVD: CVE-2016-9193

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201612-218

TYPE

input validation

Trust: 0.6

sources: CNNVD: CNNVD-201612-218

CONFIGURATIONS

sources: JVNDB: JVNDB-2016-006315

PATCH

title:cisco-sa-20161207-firepowerurl:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-firepower

Trust: 0.8

sources: JVNDB: JVNDB-2016-006315

EXTERNAL IDS

db:NVDid:CVE-2016-9193

Trust: 2.8

db:BIDid:94801

Trust: 1.4

db:SECTRACKid:1037421

Trust: 1.1

db:JVNDBid:JVNDB-2016-006315

Trust: 0.8

db:CNNVDid:CNNVD-201612-218

Trust: 0.7

db:VULHUBid:VHN-98013

Trust: 0.1

sources: VULHUB: VHN-98013 // BID: 94801 // JVNDB: JVNDB-2016-006315 // CNNVD: CNNVD-201612-218 // NVD: CVE-2016-9193

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20161207-firepower

Trust: 2.0

url:http://www.securityfocus.com/bid/94801

Trust: 1.1

url:http://www.securitytracker.com/id/1037421

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2016-9193

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2016-9193

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

sources: VULHUB: VHN-98013 // BID: 94801 // JVNDB: JVNDB-2016-006315 // CNNVD: CNNVD-201612-218 // NVD: CVE-2016-9193

CREDITS

Cisco

Trust: 0.3

sources: BID: 94801

SOURCES

db:VULHUBid:VHN-98013
db:BIDid:94801
db:JVNDBid:JVNDB-2016-006315
db:CNNVDid:CNNVD-201612-218
db:NVDid:CVE-2016-9193

LAST UPDATE DATE

2024-11-27T22:53:46.973000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-98013date:2016-12-23T00:00:00
db:BIDid:94801date:2016-12-20T01:08:00
db:JVNDBid:JVNDB-2016-006315date:2016-12-20T00:00:00
db:CNNVDid:CNNVD-201612-218date:2016-12-12T00:00:00
db:NVDid:CVE-2016-9193date:2024-11-26T16:09:02.407

SOURCES RELEASE DATE

db:VULHUBid:VHN-98013date:2016-12-14T00:00:00
db:BIDid:94801date:2016-12-07T00:00:00
db:JVNDBid:JVNDB-2016-006315date:2016-12-20T00:00:00
db:CNNVDid:CNNVD-201612-218date:2016-12-09T00:00:00
db:NVDid:CVE-2016-9193date:2016-12-14T00:59:16.973