CVE-2016-6396
Published on: 09/12/2016 12:00:00 AM UTC
Last Modified on: 03/23/2021 11:27:12 PM UTC
Certain versions of Firesight System Software from Cisco contain the following vulnerability:
Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking options are enabled, allow remote attackers to bypass malware detection via crafted fields in HTTP headers, aka Bug ID CSCuz44482.
- CVE-2016-6396 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
CVSS3 Score: 5.3 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
|
---|---|---|---|---|
NETWORK | LOW | NONE | NONE | |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
|
UNCHANGED | NONE | LOW | NONE |
CVSS2 Score: 5 - MEDIUM
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | LOW | NONE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | PARTIAL | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Cisco Firepower Management Center and FireSIGHT System Software Malware Bypass Vulnerability | Vendor Advisory tools.cisco.com text/html |
![]() |
Cisco FireSIGHT HTTP Header Input Validation Flaw Lets Remote Users Bypass Malware Detection on the Target System - SecurityTracker | www.securitytracker.com text/html |
![]() |
Cisco Firepower Management Center and FireSIGHT System Software Security Bypass Vulnerability | cve.report (archive) text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
- cpe:2.3:a:cisco:firesight_system_software:5.1.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.10:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.11:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.8:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.9:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.8:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.7:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.7:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.10:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.11:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.8:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.1.1.9:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.2.0.8:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.0.7:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.3.1.7:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.5:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.0.6:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.2:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.3:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:5.4.1.4:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.0:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.0.1:*:*:*:*:*:*:*:
- cpe:2.3:a:cisco:firesight_system_software:6.0.1:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE