CVE-2015-6427

Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL session that is mishandled after decryption, aka Bug ID CSCux53437.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityMEDIUM
CVSS5.0
EPSS0.40% EPSS medium
CWECWE-254
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Firepower System Software cisco-sa-20151217-fsm structured affected CSAF product_status