Vulnerabilities > CVE-1999-0158 - Unspecified vulnerability in Cisco PIX Firewall Software 4.1(6)/4.2(1)

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
cisco
nessus

Summary

Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve any file whose name and location is known.

Vulnerable Configurations

Part Description Count
OS
Cisco
2

Nessus

NASL familyCGI abuses
NASL idDDI_PIX_FIREWALL_MANAGER.NASL
descriptionIt is possible to read arbitrary files on this machine by using relative paths in the URL. This flaw can be used to bypass the management software
last seen2020-06-01
modified2020-06-02
plugin id10819
published2001-12-06
reporterThis script is Copyright (C) 2001-2018 Digital Defense Inc.
sourcehttps://www.tenable.com/plugins/nessus/10819
titleCisco PIX Firewall Manager (PFM) on Windows Arbitrary File Access