Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2024-20377

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface.

This vulnerability is due to the web-based management interface not properly validating user-supplied input. An attacker could exploit this vulnerability by by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

  • Published: Oct 23, 2024
  • Updated: May 4, 2025
  • CVE: CVE-2024-20377
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.4
  • AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Software From Fixed in
cisco / firepower_management_center 7.2.0 7.2.0.x
cisco / firepower_management_center 7.1.0.2 7.1.0.2.x
cisco / firepower_management_center 7.1.0 7.1.0.x
cisco / firepower_management_center 7.0.0 7.0.0.x
cisco / firepower_management_center 7.1.0.1 7.1.0.1.x
cisco / firepower_management_center 7.3.0 7.3.0.x
cisco / firepower_management_center 7.0.0.1 7.0.0.1.x
cisco / firepower_management_center 7.0.1 7.0.1.x
cisco / firepower_management_center 7.0.1.1 7.0.1.1.x
cisco / firepower_management_center 7.0.2 7.0.2.x
cisco / firepower_management_center 7.0.2.1 7.0.2.1.x
cisco / firepower_management_center 7.0.3 7.0.3.x
cisco / firepower_management_center 7.0.4 7.0.4.x
cisco / firepower_management_center 7.0.5 7.0.5.x
cisco / firepower_management_center 7.1.0.3 7.1.0.3.x
cisco / firepower_management_center 7.2.1 7.2.1.x
cisco / firepower_management_center 7.2.2 7.2.2.x
cisco / firepower_management_center 7.2.0.1 7.2.0.1.x
cisco / firepower_management_center 7.4.1.1 7.4.1.1.x
cisco / firepower_management_center 7.4.1 7.4.1.x
cisco / firepower_management_center 7.4.0 7.4.0.x
cisco / firepower_management_center 7.2.8.1 7.2.8.1.x
cisco / firepower_management_center 7.2.8 7.2.8.x
cisco / firepower_management_center 7.2.5.2 7.2.5.2.x
cisco / firepower_management_center 7.2.7 7.2.7.x
cisco / firepower_management_center 7.2.6 7.2.6.x
cisco / firepower_management_center 7.2.5.1 7.2.5.1.x
cisco / firepower_management_center 7.0.6 7.0.6.x
cisco / firepower_management_center 7.0.6.1 7.0.6.1.x
cisco / firepower_management_center 7.0.6.2 7.0.6.2.x
cisco / firepower_management_center 7.0.6.3 7.0.6.3.x
cisco / firepower_management_center 7.2.3 7.2.3.x
cisco / firepower_management_center 7.2.3.1 7.2.3.1.x
cisco / firepower_management_center 7.2.4 7.2.4.x
cisco / firepower_management_center 7.2.4.1 7.2.4.1.x
cisco / firepower_management_center 7.2.5 7.2.5.x
cisco / firepower_management_center 7.3.1 7.3.1.x
cisco / firepower_management_center 7.3.1.1 7.3.1.1.x
cisco / firepower_management_center 7.3.1.2 7.3.1.2.x