Unrated severityNVD Advisory· Published Jan 13, 2021· Updated Nov 12, 2024
Cisco Firepower Management Center XML Entity Expansion Vulnerability
CVE-2021-1267
Description
A vulnerability in the dashboard widget of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper restrictions on XML entities. An attacker could exploit this vulnerability by crafting an XML-based widget on an affected server. A successful exploit could cause increased memory and CPU utilization, which could result in a DoS condition.
Affected products
1- Range: n/a
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-xee-DFzARDcsmitrevendor-advisoryx_refsource_CISCO
News mentions
0No linked articles in our index yet.