CVE-2017-3814

MEDIUM

Cisco Firepower System Software - Auth Bypass

Title source: llm

Description

A vulnerability in Cisco Firepower System Software could allow an unauthenticated, remote attacker to maliciously bypass the appliance's ability to block certain web content, aka a URL Bypass. More Information: CSCvb93980. Known Affected Releases: 5.3.0 5.4.0 6.0.0 6.0.1 6.1.0.

Scores

CVSS v3 5.8
EPSS 0.0024
EPSS Percentile 47.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

Classification

CWE
CWE-20
Status published

Affected Products (6)

cisco/secure_firewall_management_center
cisco/secure_firewall_management_center
cisco/secure_firewall_management_center
cisco/secure_firewall_management_center
cisco/secure_firewall_management_center
n/a/Cisco Firepower System Software 5.x 6.x < Cisco Firepower System Software 5.x 6.x

Timeline

Published Feb 03, 2017
Tracked Since Feb 18, 2026