CVE-2019-1657

A vulnerability in Cisco AMP Threat Grid could allow an authenticated, remote attacker to access sensitive information. The vulnerability is due to unsafe creation of API keys. An attacker could exploit this vulnerability by using insecure credentials to gain unauthorized access to the affected device. An exploit could allow the attacker to gain unauthorized access to information by using the API key credentials.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cisco:amp_threat_grid_appliance:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:amp_threat_grid_cloud:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-01-24 16:29

Updated : 2024-02-28 16:48


NVD link : CVE-2019-1657

Mitre link : CVE-2019-1657

CVE.ORG link : CVE-2019-1657


JSON object : View

Products Affected

cisco

  • amp_threat_grid_appliance
  • amp_threat_grid_cloud
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor