A vulnerability in the input protection mechanisms of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to view data without proper authorization. This vulnerability exists because of a protection mechanism that relies on the existence or values of a specific input. An attacker could exploit this vulnerability by modifying this input to bypass the protection mechanism and sending a crafted request to an affected device. A successful exploit could allow the attacker to view data beyond the scope of their authorization.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-infdisc-guJWRwQu | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2022-04-27T00:00:00
Updated: 2022-05-03T03:20:10
Reserved: 2021-11-02T00:00:00
Link: CVE-2022-20744
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-05-03T04:15:09.437
Modified: 2023-07-24T13:34:52.837
Link: CVE-2022-20744
JSON object: View
Redhat Information
No data.
CWE