Cisco Firepower Management Center Software Vulnerability: Sensitive Configuration Information at Risk
CVE-2021-34750
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 15 November 2024
What is CVE-2021-34750?
A vulnerability exists in the web-based GUI configuration manager of Cisco Firepower Management Center Software, which may permit an authenticated, remote attacker with low privilege credentials to access sensitive configuration details. This issue arises from inadequate encryption of sensitive data stored within the GUI. Exploiting this vulnerability involves logging into the Firepower Management Center GUI and accessing specific sensitive configurations, which could allow exposure of crucial configuration parameters in plain text. Cisco has addressed this issue through software updates, and no workarounds are available.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Firepower Management Center
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved