Vulnerabilities > Cisco > Firesight System Software

DATE CVE VULNERABILITY TITLE RISK
2015-06-12 CVE-2015-0737 Cross-site Scripting vulnerability in Cisco Firesight System Software 5.3.1.1
Multiple cross-site scripting (XSS) vulnerabilities in Cisco FireSIGHT System Software 5.3.1.1 allow remote attackers to inject arbitrary web script or HTML via a crafted (1) GET or (2) POST parameter, aka Bug ID CSCuu11099.
network
cisco CWE-79
4.3
2015-06-04 CVE-2015-0766 Cross-site Scripting vulnerability in Cisco Firesight System Software 6.0.0
Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface in the Management Center component in Cisco FireSIGHT System Software 6.0.0 allow remote attackers to inject arbitrary web script or HTML via unspecified fields, aka Bug IDs CSCus93566, CSCut31557, and CSCut47196.
network
cisco CWE-79
4.3
2015-05-19 CVE-2015-0739 Improper Input Validation vulnerability in Cisco Firesight System Software 5.3.0
The Lights-Out Management (LOM) implementation in Cisco FireSIGHT System Software 5.3.0 on Sourcefire 3D Sensor devices allows remote authenticated users to perform arbitrary Baseboard Management Controller (BMC) file uploads via unspecified vectors, aka Bug ID CSCus87938.
network
low complexity
cisco CWE-20
4.0
2015-04-23 CVE-2015-0707 Cross-site Scripting vulnerability in Cisco Firesight System Software 5.3.1.1/6.0.0
Cross-site scripting (XSS) vulnerability in Cisco FireSIGHT System Software 5.3.1.1 and 6.0.0 in FireSIGHT Management Center allows remote authenticated users to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCus85425.
network
cisco CWE-79
3.5
2015-04-23 CVE-2015-0706 HTTP Open Redirection vulnerability in Cisco Firesight System Software 5.3.1.1/5.3.1.2/6.0.0
Open redirect vulnerability in Cisco FireSIGHT System Software 5.3.1.1, 5.3.1.2, and 6.0.0 in FireSIGHT Management Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted HTTP header, aka Bug IDs CSCut06060, CSCut06056, and CSCus98966.
network
cisco
5.8