Sourcefire Defense Center

Vendor:

First CVE: Oct 8, 2020 · Active for 5 years

8
Total CVEs
More Total CVEs than 87% of tracked products
4.0
Avg CVEs / Year
Higher CVE frequency than 85% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 38% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Sourcefire Defense Center over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 8, 2020
5 years ago
Most Recent CVE
Oct 27, 2021
1,734 days ago

CVE Severity & Scoring

Sourcefire Defense Center8 CVEs
All CVEs352,785 CVEs
MediumHigh
Attack Vector
Local3 (37.5%)
Network5 (62.5%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (62.5%)
Unknown0 (0.0%)
Required3 (37.5%)
Privileges Required
Low4 (50.0%)
High2 (25.0%)
None2 (25.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to perform a directory trave
Oct 27, 20218.125NONO
A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker
Oct 27, 20217.524NONO
Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges
Oct 27, 20217.824NONO
Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges
Oct 27, 20217.824NONO
Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an attacker to execute a cross-site scripting (XSS) a
Oct 27, 20216.120NONO
A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite or append arbitrary data to system files using root-level
Oct 27, 20216.020NONO
Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an attacker to execute a cross-site scripting (XSS) a
Oct 27, 20214.818NONO
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) att
Oct 8, 20205.415NONO

Exploit Exposure

Signals from CVEs in this product scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (8 CVEs).

Media Mentions

Signals from CVEs in this product scope (8 CVEs).

Top CNAs Publishing CVEs For Sourcefire Defense Center

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
7.1.056.50.4%00
7.0.076.90.7%00
6.7.117.51.4%00
6.7.0.317.51.4%00
6.7.056.50.4%00
6.6.418.11.9%00
6.6.318.11.9%00
6.6.218.11.9%00
6.6.166.80.6%00
6.6.066.60.6%00
6.5.076.80.8%00
6.4.0.615.40.6%00
6.4.0.1317.51.4%00
6.4.0.1127.80.3%00
6.4.086.70.7%00
6.3.056.80.6%00
6.2.366.80.6%00
6.2.046.60.4%00
6.1.046.60.4%00