ID

VAR-202005-0692


CVE

CVE-2020-3253


TITLE

Cisco Firepower Threat Defense Software vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2020-005204

DESCRIPTION

A vulnerability in the support tunnel feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access the shell of an affected device even though expert mode is disabled. The vulnerability is due to improper configuration of the support tunnel feature. An attacker could exploit this vulnerability by enabling the support tunnel, setting a key, and deriving the tunnel password. A successful exploit could allow the attacker to run any system command with root access on an affected device. Cisco Firepower Threat Defense (FTD) There are unspecified vulnerabilities in the software.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be put into a state

Trust: 1.8

sources: NVD: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // VULHUB: VHN-181378 // VULMON: CVE-2020-3253

AFFECTED PRODUCTS

vendor:ciscomodel:firepower threat defensescope:ltversion:6.5.0

Trust: 1.0

vendor:ciscomodel:firepower threat defense softwarescope: - version: -

Trust: 0.8

vendor:ciscomodel:firepower threat defensescope:eqversion: -

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:5.3.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:5.4.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.1.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.1.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.1.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.0.1.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.6

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.1.0.7

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.0.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.2.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.6

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.7

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.9

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.10

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.11

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.12

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.13

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.14

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.15

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.2.3.16

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.3.0.6

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.1

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.2

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.3

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.4

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.5

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.6

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.7

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.8

Trust: 0.1

vendor:ciscomodel:firepower threat defensescope:eqversion:6.4.0.9

Trust: 0.1

sources: VULMON: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // NVD: CVE-2020-3253

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2020-3253
value: MEDIUM

Trust: 1.0

ykramarz@cisco.com: CVE-2020-3253
value: MEDIUM

Trust: 1.0

NVD: JVNDB-2020-005204
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-202005-208
value: MEDIUM

Trust: 0.6

VULHUB: VHN-181378
value: HIGH

Trust: 0.1

VULMON: CVE-2020-3253
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2020-3253
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.1

NVD: JVNDB-2020-005204
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: NONE
impactScore: NONE
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.8

VULHUB: VHN-181378
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2020-3253
baseSeverity: MEDIUM
baseScore: 6.7
vectorString: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: HIGH
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 0.8
impactScore: 5.9
version: 3.1

Trust: 1.0

ykramarz@cisco.com: CVE-2020-3253
baseSeverity: MEDIUM
baseScore: 6.7
vectorString: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: HIGH
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 0.8
impactScore: 5.9
version: 3.0

Trust: 1.0

NVD: JVNDB-2020-005204
baseSeverity: MEDIUM
baseScore: 6.7
vectorString: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: HIGH
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-181378 // VULMON: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // CNNVD: CNNVD-202005-208 // NVD: CVE-2020-3253 // NVD: CVE-2020-3253

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

problemtype:CWE-284

Trust: 1.0

problemtype:CWE-Other

Trust: 0.8

sources: JVNDB: JVNDB-2020-005204 // NVD: CVE-2020-3253

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-202005-208

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202005-208

CONFIGURATIONS

sources: JVNDB: JVNDB-2020-005204

PATCH

title:cisco-sa-ftd-shell-9rhJF68Kurl:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-shell-9rhJF68K

Trust: 0.8

title:Cisco Firepower Threat Defense Fixes for access control error vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=117810

Trust: 0.6

title:Cisco: Cisco Firepower Threat Defense Software Shell Access Vulnerabilityurl:https://vulmon.com/vendoradvisory?qidtp=cisco_security_advisories_and_alerts_ciscoproducts&qid=cisco-sa-ftd-shell-9rhJF68K

Trust: 0.1

title:The Registerurl:https://www.theregister.co.uk/2020/05/07/cisco_may_patches/

Trust: 0.1

sources: VULMON: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // CNNVD: CNNVD-202005-208

EXTERNAL IDS

db:NVDid:CVE-2020-3253

Trust: 2.6

db:JVNDBid:JVNDB-2020-005204

Trust: 0.8

db:CNNVDid:CNNVD-202005-208

Trust: 0.7

db:NSFOCUSid:47244

Trust: 0.6

db:AUSCERTid:ESB-2020.1614

Trust: 0.6

db:AUSCERTid:ESB-2020.1614.2

Trust: 0.6

db:CNVDid:CNVD-2020-27107

Trust: 0.1

db:VULHUBid:VHN-181378

Trust: 0.1

db:VULMONid:CVE-2020-3253

Trust: 0.1

sources: VULHUB: VHN-181378 // VULMON: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // CNNVD: CNNVD-202005-208 // NVD: CVE-2020-3253

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-ftd-shell-9rhjf68k

Trust: 1.8

url:https://nvd.nist.gov/vuln/detail/cve-2020-3253

Trust: 1.4

url:https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2020-3253

Trust: 0.8

url:https://www.auscert.org.au/bulletins/esb-2020.1614/

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2020.1614.2/

Trust: 0.6

url:http://www.nsfocus.net/vulndb/47244

Trust: 0.6

url:https://cwe.mitre.org/data/definitions/.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/181524

Trust: 0.1

sources: VULHUB: VHN-181378 // VULMON: CVE-2020-3253 // JVNDB: JVNDB-2020-005204 // CNNVD: CNNVD-202005-208 // NVD: CVE-2020-3253

SOURCES

db:VULHUBid:VHN-181378
db:VULMONid:CVE-2020-3253
db:JVNDBid:JVNDB-2020-005204
db:CNNVDid:CNNVD-202005-208
db:NVDid:CVE-2020-3253

LAST UPDATE DATE

2024-08-14T14:03:47.663000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-181378date:2020-05-12T00:00:00
db:VULMONid:CVE-2020-3253date:2020-05-12T00:00:00
db:JVNDBid:JVNDB-2020-005204date:2020-06-09T00:00:00
db:CNNVDid:CNNVD-202005-208date:2022-03-18T00:00:00
db:NVDid:CVE-2020-3253date:2020-05-12T18:27:58.607

SOURCES RELEASE DATE

db:VULHUBid:VHN-181378date:2020-05-06T00:00:00
db:VULMONid:CVE-2020-3253date:2020-05-06T00:00:00
db:JVNDBid:JVNDB-2020-005204date:2020-06-09T00:00:00
db:CNNVDid:CNNVD-202005-208date:2020-05-06T00:00:00
db:NVDid:CVE-2020-3253date:2020-05-06T17:15:12.540