This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Secure Firewall Management Center. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.1.
ZDI-26-709: Cisco Secure Firewall Management Center CommandSinkRmi Deserialization of Untrusted Data Remote Code Execution Vulnerability
About this summary. This is a short, independently written summary of an article first published by Zero Day Initiative. Cyber Security News did not report or verify the underlying story. Read the original: http://www.zerodayinitiative.com/advisories/ZDI-26-709/
Source attribution: headline and facts are from Zero Day Initiative (zerodayinitiative.com). Summary method: excerpt of the source description. See our source attribution policy.
