Firepower 4100
Vendor:
First CVE: Oct 19, 2017 · Active for 8 years
13
Total CVEs
More Total CVEs than 91% of tracked products
2.6
Avg CVEs / Year
Higher CVE frequency than 75% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Firepower 4100 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 19, 2017
8 years ago
Most Recent CVE
Aug 23, 2023
1,066 days ago
CVE Severity & Scoring
Firepower 410013 CVEs
38%
62%
All CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local6 (46.2%)
Network6 (46.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (7.7%)
Attack Complexity
Low13 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None13 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low2 (15.4%)
High4 (30.8%)
None7 (53.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-20866HIGH A vulnerability in the handling of RSA keys on devices running Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an una | Aug 10, 2022 | 7.5 | 33 | NO | NO |
CVE-2017-3883HIGH A vulnerability in the authentication, authorization, and accounting (AAA) implementation of Cisco Firepower Extensible Operating System (FXOS) and NX-OS System Software could allo | Oct 19, 2017 | 8.6 | 28 | NO | NO |
CVE-2019-1714HIGH A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientless SSL VPN (WebVPN) and AnyConnect Remote Access VPN in Cisc | May 3, 2019 | 8.6 | 27 | NO | NO |
CVE-2019-1597HIGH Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenti | Mar 7, 2019 | 7.5 | 26 | NO | NO |
CVE-2022-20751HIGH A vulnerability in the Snort detection engine integration for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause unlimited memor | May 3, 2022 | 7.5 | 25 | NO | NO |
CVE-2019-1598HIGH Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenti | Mar 7, 2019 | 7.5 | 25 | NO | NO |
CVE-2023-20016MEDIUM A vulnerability in the backup configuration feature of Cisco UCS Manager Software and in the configuration export feature of Cisco FXOS Software could allow an unauthenticated atta | Feb 23, 2023 | 6.5 | 24 | NO | NO |
CVE-2021-34714HIGH A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IOS Software, Cisco IOS XE Software, Cisco IOS XR Software, and Cisco NX-OS Softwa | Sep 23, 2021 | 7.4 | 24 | NO | NO |
CVE-2019-12699HIGH Multiple vulnerabilities in the CLI of Cisco FXOS Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute commands on the | Oct 2, 2019 | 7.8 | 23 | NO | NO |
CVE-2023-20015MEDIUM A vulnerability in the CLI of Cisco Firepower 4100 Series, Cisco Firepower 9300 Security Appliances, and Cisco UCS 6200, 6300, 6400, and 6500 Series Fabric Interconnects could allo | Feb 23, 2023 | 6.7 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (13 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (13 CVEs).
Media Mentions
Signals from CVEs in this product scope (13 CVEs).
Top CNAs Publishing CVEs For Firepower 4100
Top CWEs
Versions
No cataloged versions.