Known vulnerabilities in Cisco Firepower 4100 Series Next-Generation Firewall
Vendor:
Cisco Systems, Inc
Software CPE:
cpe:2.3:h:cisco_systems:cisco_firepower_4100_series_next-generation_firewall:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
14
Public exploits:
2
Known exploited (KEV):
2
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (14)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU62683 - Allocation of Resources Without Limits or Throttling CVE-2022-20751 |
CWE-770 | High | - | 28.04.2022 |
SB2022042816 |
||
| #VU56875 - Improper input validation CVE-2021-34714 |
CWE-20 | Medium | - | 24.09.2021 |
SB2021092427 |
||
| #VU52740 - Command injection CVE-2021-1448 |
CWE-77 | Low | - | 29.04.2021 |
SB2021042908 |
||
| #VU52739 - Resource exhaustion CVE-2021-1489 |
CWE-400 | Low | - | 29.04.2021 |
SB2021042907 |
||
| #VU50951 - Out-of-bounds write CVE-2021-1368 |
CWE-787 | Medium | 2.8.1.143, 2.9.1.135 | 25.02.2021 |
SB2021022527 |
||
| #VU47948 - Permissions, Privileges, and Access Controls CVE-2020-3514 |
CWE-264 | Low | - | 21.10.2020 |
SB2020102723 |
||
| #VU46250 - Memory corruption CVE-2020-3545 |
CWE-119 | Low | - | 03.09.2020 |
SB2020090309 |
||
| #VU46104 - NULL Pointer Dereference CVE-2020-3517 |
CWE-476 | Medium | 1.1.4.179, 2.0.1.150, 2.1.1.86, 2.2.1.70, 2.2.2.14, 92.3.1.2047 | 27.08.2020 |
SB2020082717 |
||
| #VU49026 - Integer overflow CVE-2020-3120 |
CWE-190 | Low | - | 05.02.2020 |
SB2020020539 |
||
| #VU15667 - Improper input validation CVE-2018-15454 |
CWE-20 | High | - | 01.11.2018 |
SB2018110101 |
||
| #VU13409 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2018-0300 |
CWE-22 | High | 1.1.4.168, 2.0.1.140, 2.1.1.47, 2.1.1.1764, 2.2.1.101 | 20.06.2018 |
SB2018062109 |
||
| #VU13246 - Relative Path Traversal CVE-2018-0296 |
CWE-23 | Medium | - | 06.06.2018 |
SB2018060810 SB2018070402 |
||
| #VU9093 - Command injection CVE-2017-12277 |
CWE-77 | Low | - | 02.11.2017 |
SB2017110213 |
||
| #VU9092 - Improper input validation CVE-2017-12243 |
CWE-20 | Low | - | 02.11.2017 |
SB2017110212 |