A vulnerability in the command line interface (CLI) of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker with administrative privileges to execute commands on the underlying operating system with root privileges. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by executing a specific CLI command that includes crafted arguments. A successful exploit could allow the attacker to execute commands on the underlying OS with root privileges.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    21 Nov 2024, 04:23
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191002-ftd-cmdinj - Vendor Advisory | 
Information
                Published : 2019-10-02 19:15
Updated : 2024-11-21 04:23
NVD link : CVE-2019-12694
Mitre link : CVE-2019-12694
CVE.ORG link : CVE-2019-12694
JSON object : View
Products Affected
                cisco
- firepower_threat_defense
CWE
                
                    
                        
                        CWE-20
                        
            Improper Input Validation
