Vulnerabilities > Cisco > Firepower Management Center > High

DATE CVE VULNERABILITY TITLE RISK
2019-05-03 CVE-2019-1699 OS Command Injection vulnerability in Cisco Firepower Management Center
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to perform a command injection attack.
local
low complexity
cisco CWE-78
7.2
2018-04-19 CVE-2018-0233 Resource Exhaustion vulnerability in Cisco Firepower Management Center
A vulnerability in the Secure Sockets Layer (SSL) packet reassembly functionality of the detection engine in Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause the detection engine to consume excessive system memory on an affected device, which could cause a denial of service (DoS) condition.
network
low complexity
cisco CWE-400
7.8
2017-04-07 CVE-2017-3885 Resource Exhaustion vulnerability in Cisco Firepower Management Center
A vulnerability in the detection engine reassembly of Secure Sockets Layer (SSL) packets for Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition because the Snort process consumes a high level of CPU resources.
network
cisco CWE-400
7.1