Vulnerability Database

296,147

Total vulnerabilities in the database

CVE-2024-20374

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker with Administrator-level privileges to execute arbitrary commands on the underlying operating system.

This vulnerability is due to insufficient input validation of certain HTTP request parameters that are sent to the web-based management interface. An attacker could exploit this vulnerability by authenticating to the Cisco FMC web-based management interface and sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to execute commands as the root user on the affected device. To exploit this vulnerability, an attacker would need Administrator-level credentials.

  • Published: Oct 23, 2024
  • Updated: Aug 7, 2025
  • CVE: CVE-2024-20374
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.2
  • AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

No CWE or OWASP classifications available.

Software From Fixed in
cisco / secure_firewall_management_center 7.2.5.2 7.2.5.2.x
cisco / secure_firewall_management_center 7.2.5.1 7.2.5.1.x
cisco / secure_firewall_management_center 7.2.5 7.2.5.x
cisco / secure_firewall_management_center 7.2.4.1 7.2.4.1.x
cisco / secure_firewall_management_center 7.2.4 7.2.4.x
cisco / secure_firewall_management_center 7.2.3.1 7.2.3.1.x
cisco / secure_firewall_management_center 7.1.0 7.1.0.x
cisco / secure_firewall_management_center 7.1.0.1 7.1.0.1.x
cisco / secure_firewall_management_center 7.1.0.2 7.1.0.2.x
cisco / secure_firewall_management_center 7.1.0.3 7.1.0.3.x
cisco / secure_firewall_management_center 7.2.0 7.2.0.x
cisco / secure_firewall_management_center 7.2.1 7.2.1.x
cisco / secure_firewall_management_center 7.2.2 7.2.2.x
cisco / secure_firewall_management_center 7.2.0.1 7.2.0.1.x
cisco / secure_firewall_management_center 7.2.3 7.2.3.x
cisco / secure_firewall_management_center 7.4.0 7.4.0.x
cisco / secure_firewall_management_center 7.4.1 7.4.1.x
cisco / secure_firewall_management_center 7.4.1.1 7.4.1.1.x
cisco / secure_firewall_management_center 6.7.0 6.7.0.x
cisco / secure_firewall_management_center 6.7.0.1 6.7.0.1.x
cisco / secure_firewall_management_center 6.7.0.2 6.7.0.2.x
cisco / secure_firewall_management_center 6.7.0.3 6.7.0.3.x
cisco / secure_firewall_management_center 7.0.0 7.0.0.x
cisco / secure_firewall_management_center 7.0.0.1 7.0.0.1.x
cisco / secure_firewall_management_center 7.0.1 7.0.1.x
cisco / secure_firewall_management_center 7.0.1.1 7.0.1.1.x
cisco / secure_firewall_management_center 7.0.2 7.0.2.x
cisco / secure_firewall_management_center 7.0.2.1 7.0.2.1.x
cisco / secure_firewall_management_center 7.0.3 7.0.3.x
cisco / secure_firewall_management_center 7.0.4 7.0.4.x
cisco / secure_firewall_management_center 7.0.5 7.0.5.x
cisco / secure_firewall_management_center 7.0.6 7.0.6.x
cisco / secure_firewall_management_center 7.0.6.1 7.0.6.1.x
cisco / secure_firewall_management_center 7.0.6.2 7.0.6.2.x
cisco / secure_firewall_management_center 7.2.6 7.2.6.x
cisco / secure_firewall_management_center 7.2.7 7.2.7.x
cisco / secure_firewall_management_center 7.2.8 7.2.8.x
cisco / secure_firewall_management_center 7.2.8.1 7.2.8.1.x
cisco / secure_firewall_management_center 7.3.0 7.3.0.x
cisco / secure_firewall_management_center 7.3.1 7.3.1.x
cisco / secure_firewall_management_center 7.3.1.1 7.3.1.1.x
cisco / secure_firewall_management_center 7.3.1.2 7.3.1.2.x