A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured. The vulnerability is due to incorrect counting of the percentage of dropped traffic. An attacker could exploit this vulnerability by sending network traffic to a targeted device. An exploit could allow the attacker to bypass configured file action policies, and traffic that should be dropped could be allowed into the network. Cisco Bug IDs: CSCvf86435.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/103940 | Third Party Advisory VDB Entry |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss2 | Vendor Advisory |
http://www.securityfocus.com/bid/103940 | Third Party Advisory VDB Entry |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss2 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 03:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/103940 - Third Party Advisory, VDB Entry | |
References | () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180418-fss2 - Vendor Advisory |
Information
Published : 2018-04-19 20:29
Updated : 2024-11-21 03:37
NVD link : CVE-2018-0254
Mitre link : CVE-2018-0254
CVE.ORG link : CVE-2018-0254
JSON object : View
Products Affected
cisco
- firepower_management_center_1000
- firepower_management_center_4500
- firesight_management_center_1500
- firepower_appliance_8140
- ngips_virtual_appliance
- firepower_appliance_8260
- firepower_appliance_7110
- firepower_appliance_8120
- firepower_appliance_8350
- firepower_appliance_7030
- firepower_appliance_8290
- firepower_appliance_8390
- firepower_management_center_2500
- firepower_appliance_7120
- firepower_threat_defense
- firepower_management_center_4000
- amp_8150
- firepower_appliance_7010
- firepower_management_center_2000
- firepower_appliance_7125
- firepower_appliance_8250
- firesight_management_center_750
- firepower_appliance_8270
- firepower_appliance_8360
- amp_7150
- firepower_appliance_7115
- firepower_appliance_7050
- firepower_appliance_8370
- firepower_appliance_7020
- firepower_appliance_8130
- firesight_management_center_3500
CWE
CWE-693
Protection Mechanism Failure