{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T16:42:37Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"cisco-sa-fmc-infodisc-RJdktM6f","slug":"cisco-sa-fmc-infodisc-rjdktm6f","vendor":"Cisco","title":"Cisco Firepower Management Center Information Disclosure Vulnerability","summary":"A vulnerability in the storage of proxy server credentials of Cisco&nbsp;Firepower Management Center (FMC) could allow an authenticated, local attacker to view credentials for a configured proxy server. The vulnerability is due to clear-text storage and weak permissions of related configuration files. An attacker could exploit this vulnerability by accessing the CLI of the affected software and viewing the contents of the affected files. A successful exploit could allow the attacker to view the credentials that are used to access the proxy server. Cisco&nbsp;has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f","severity":"Medium","published_at":"2021-01-13T16:00:00Z","updated_at":"2021-01-13T16:00:00Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f/csaf/cisco-sa-fmc-infodisc-RJdktM6f.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":2,"public_evidence_count":2,"kev_count":0},"cves":[{"id":"CVE-2021-1126","kev":false}],"public_evidence":[{"product":{"name":"Cisco Firepower Management Center","slug":"cisco-firepower-management-center","vendor":"Cisco"},"cve":{"id":"CVE-2021-1126"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:47:44Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"2.9.0; 2.9.7.10; 4.10.3; 4.10.3.9; 5.2.0; 5.3.0; 5.3.0.2; 5.3.0.3; 5.3.0.4; 5.3.1.3; 5.3.1.4; 5.3.1.5; 5.3.1.6; 5.3.1.7; 5.4.0; 5.4.0.2; 5.4.1; 5.4.1.1; 5.4.1.2; 5.4.1.3; 5.4.1.4; 5.4.1.5; 5.4.1.6; 5.4.1.9; 6.0.0; 6.0.0.0; 6.0.0.1; 6.0.1; 6.0.1.1; 6.0.1.2; 6.0.1.3; 6.0.1.4; 6.1.0; 6.1.0.1; 6.1.0.2; 6.1.0.3; 6.1.0.4; 6.1.0.5; 6.1.0.6; 6.1.0.7; 6.2.0; 6.2.0.1; 6.2.0.2; 6.2.0.3; 6.2.0.4; 6.2.0.5; 6.2.0.6; 6.2.0.7; 6.2.2.1; 6.2.2.2; 6.2.2.3; 6.2.2.4; 6.2.2.5; 6.2.3.1; 6.2.3.10; 6.2.3.11; 6.2.3.12; 6.2.3.13; 6.2.3.14; 6.2.3.15; 6.2.3.16; 6.2.3.2; 6.2.3.3; 6.2.3.4; 6.2.3.5; 6.2.3.6; 6.2.3.7; 6.2.3.8; 6.2.3.9; 6.3.0; 6.3.0.1; 6.3.0.2; 6.3.0.3; 6.3.0.4; 6.3.0.5; 6.4.0; 6.4.0.1; 6.4.0.10; 6.4.0.2; 6.4.0.3; 6.4.0.4; 6.4.0.5; 6.4.0.6; 6.4.0.7; 6.4.0.8; 6.4.0.9; 6.5.0; 6.5.0.1; 6.5.0.2; 6.5.0.3; 6.5.0.4; 6.6.0; 6.6.0.1; 6.6.1","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"published_at":"2021-01-13T16:00:00Z","updated_at":"2021-01-13T16:00:00Z","advisory_updated_at":"2021-01-13T16:00:00Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f","row_display_order":1},{"product":{"name":"Cisco Adaptive Security Appliance (ASA) Software","slug":"cisco-adaptive-security-appliance-asa-software","vendor":"Cisco"},"cve":{"id":"CVE-2021-1126"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:47:44Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"5.3.1; 6.2.1; 6.2.2; 6.2.3","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"published_at":"2021-01-13T16:00:00Z","updated_at":"2021-01-13T16:00:00Z","advisory_updated_at":"2021-01-13T16:00:00Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infodisc-RJdktM6f","row_display_order":2}]}