Impact
The vulnerability lies in a critical API used by Cisco Secure Firewall Management Center (FMC). The API is missing authentication checks, which allows an unauthenticated, remote adversary to repeatedly query the endpoint. Successful exploitation permits the attacker to download files that should otherwise be protected, resulting in disclosure of sensitive configuration or log data. The same unbounded API calls can also consume excessive disk space, potentially rendering the device unresponsive and creating a denial‑of‑service condition.
Affected Systems
Affected product is Cisco Secure Firewall Management Center from Cisco. No specific affected firmware or software versions are listed in the advisory, so all current and legacy releases that contain the vulnerable API should be considered at risk until a patch is applied.
Risk and Exploitability
The CVSS score of 7.5 describes a high‑severity risk, but the EPSS score is listed as less than 1%, indicating a very low probability of exploitation at the time of analysis. The vulnerability is not currently documented in the CISA KEV catalog. The likely attack vector is remote over the network, requiring no prior authentication and no special privileges. Attacking parties can observe the API from outside the protected network, download restricted files, and drain disk space, thereby compromising confidentiality and availability.
OpenCVE Enrichment