A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to inject arbitrary shell commands that are executed by the device. More Information: CSCvb61343. Known Affected Releases: 2.0(1.68). Known Fixed Releases: 2.0(1.118) 2.1(1.47) 92.1(1.1646) 92.1(1.1763) 92.2(1.101).
Advisories
Source ID Title
EUVD EUVD EUVD-2017-12923 A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to inject arbitrary shell commands that are executed by the device. More Information: CSCvb61343. Known Affected Releases: 2.0(1.68). Known Fixed Releases: 2.0(1.118) 2.1(1.47) 92.1(1.1646) 92.1(1.1763) 92.2(1.101).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 11 Aug 2026 20:00:00 +0000

Type Values Removed Values Added
First Time appeared Cisco secure Firewall Threat Defense
CPEs cpe:2.3:a:cisco:firepower_threat_defense:5.3.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:firepower_threat_defense:5.4.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:firepower_threat_defense:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:firepower_threat_defense:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:firepower_threat_defense:6.1.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_firewall_threat_defense:5.3.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_firewall_threat_defense:5.4.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_firewall_threat_defense:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_firewall_threat_defense:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0:*:*:*:*:*:*:*
Vendors & Products Cisco firepower Threat Defense
Cisco secure Firewall Threat Defense

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-08-05T14:39:41.075Z

Reserved: 2016-12-21T00:00:00.000Z

Link: CVE-2017-3806

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2017-02-03T07:59:00.657

Modified: 2026-08-11T19:33:44.513

Link: CVE-2017-3806

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses