Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2015-6374

The web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, aka Bug ID CSCux10604.

SeverityMEDIUM
CVSS4.3
CWECWE-20
KEV
Published
Modified

Related Products

Product Advisory Evidence
Firepower Extensible Operating System cisco-sa-20151117-firepower4 Cisco OpenVuln
Cisco Firepower Extensible Operating System cisco-sa-20151117-firepower4 Cisco OpenVuln
Cisco Firepower 9000 Series cisco-sa-20151117-firepower4 Cisco OpenVuln