QID 317098
Date Published: 2021-10-29
QID 317098: Cisco Firepower Threat Defense (FTD) Software Command Line Interface (CLI) Arbitrary File Write Vulnerability (cisco-sa-ftd-file-write-SHVcmQVc)
A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite or
append arbitrary data to system files using root-level privileges. The attacker must have administrative credentials on the device.
Affected Products
This vulnerability affected Cisco FTD Software.
Note: The default configuration is vulnerable
QID Detection Logic (Authenticated):
The check matches Cisco FTD version retrieved via Unix Auth using "show version" command.
A successful exploit could allow the attacker to overwrite or append arbitrary data to system files using root-level privileges.
Solution
Customers are advised to refer to cisco-sa-ftd-file-write-SHVcmQVc for more information.
Vendor References
- cisco-sa-ftd-file-write-SHVcmQVc -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-file-write-SHVcmQVc
CVEs related to QID 317098
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ftd-file-write-SHVcmQVc |
|