{"id": "CVE-2021-1224", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 5.0, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 5.3, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N", "integrityImpact": "LOW", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 1.4, "exploitabilityScore": 3.9}, {"type": "Secondary", "source": "ykramarz@cisco.com", "cvssData": {"scope": "CHANGED", "version": "3.1", "baseScore": 5.8, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N", "integrityImpact": "LOW", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 1.4, "exploitabilityScore": 3.9}]}, "published": "2021-01-13T22:15:20.410", "references": [{"url": "https://lists.debian.org/debian-lts-announce/2023/02/msg00011.html", "source": "ykramarz@cisco.com"}, {"url": "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-snort-tfo-bypass-MmzZrtes", "tags": ["Vendor Advisory"], "source": "ykramarz@cisco.com"}, {"url": "https://www.debian.org/security/2023/dsa-5354", "source": "ykramarz@cisco.com"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}, {"type": "Secondary", "source": "ykramarz@cisco.com", "description": [{"lang": "en", "value": "CWE-693"}]}], "descriptions": [{"lang": "en", "value": "Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect detection of the HTTP payload if it is contained at least partially within the TFO connection handshake. An attacker could exploit this vulnerability by sending crafted TFO packets with an HTTP payload through an affected device. A successful exploit could allow the attacker to bypass configured file policy for HTTP packets and deliver a malicious payload."}, {"lang": "es", "value": "M\u00faltiples productos de Cisco est\u00e1n afectados por una vulnerabilidad con TCP Fast Open (TFO) cuando se usan en conjunto con el motor de detecci\u00f3n Snort que podr\u00eda permitir a un atacante remoto no autenticado omitir una pol\u00edtica de archivos configurada para HTTP. La vulnerabilidad es debido a la detecci\u00f3n incorrecta de la carga \u00fatil HTTP si est\u00e1 contenida al menos parcialmente dentro del protocolo de enlace de la conexi\u00f3n TFO. Un atacante podr\u00eda explotar esta vulnerabilidad mediante el env\u00edo de paquetes TFO dise\u00f1ados con una carga \u00fatil HTTP a trav\u00e9s de un dispositivo afectado. Una explotaci\u00f3n con \u00e9xito podr\u00eda permitir al atacante omitir la pol\u00edtica de archivos configurada para paquetes HTTP y entregar una carga \u00fatil maliciosa."}], "lastModified": "2023-11-07T03:27:44.583", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:cisco:firepower_management_center:2.9.14.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4ED9EFA4-D903-4F21-91CD-96E8D13B8EC6"}, {"criteria": "cpe:2.3:a:cisco:firepower_management_center:2.9.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C53AE9E8-F123-42ED-BB8D-AC625E998951"}, {"criteria": "cpe:2.3:a:cisco:firepower_management_center:2.9.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C96EC981-446D-4741-AEE0-F615A468A7FF"}, {"criteria": "cpe:2.3:a:cisco:firepower_management_center:2.9.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "163F6B90-2F10-40CC-897B-FB58FA4568FD"}, {"criteria": "cpe:2.3:a:cisco:firepower_management_center:2.9.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C8E9BF1-2B66-419E-B4C2-5D605BF459EC"}, {"criteria": "cpe:2.3:a:cisco:firepower_management_center:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C5D632B-59F7-45F5-B9A0-2146A29698E5"}, {"criteria": "cpe:2.3:a:cisco:firepower_threat_defense:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB1B5DAC-CE54-43E4-89F6-6DFD7A65C8EA", "versionEndExcluding": "6.7.0"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:ios_xe:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72B91784-38A9-4A2A-AA92-8AB558924BBD", "versionEndExcluding": "17.4.1"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:1100-4p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A2D2305B-B69E-4F74-A44E-07B3205CE9F7"}, {"criteria": "cpe:2.3:h:cisco:1100-8p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "26DD41B3-1D1D-44D3-BA8E-5A66AFEE77E6"}, {"criteria": "cpe:2.3:h:cisco:1101-4p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5AAD4397-6DCF-493A-BD61-3A890F6F3AB2"}, {"criteria": "cpe:2.3:h:cisco:1109-2p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3F2F0A8E-97F6-41AC-BE67-4B2D60F9D36B"}, {"criteria": "cpe:2.3:h:cisco:1109-4p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BB9229F3-7BCE-46C4-9879-D57B5BAAE44E"}, {"criteria": "cpe:2.3:h:cisco:1111x-8p_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A5A606FE-E6F1-43F9-B1CD-D9DF35FC3573"}, {"criteria": "cpe:2.3:h:cisco:4221_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "6C8AED7C-DDA3-4C29-BB95-6518C02C551A"}, {"criteria": "cpe:2.3:h:cisco:4321_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9421DBEF-AE42-4234-B49F-FCC34B804D7F"}, {"criteria": "cpe:2.3:h:cisco:4331_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5419CB9F-241F-4431-914F-2659BE27BEA5"}, {"criteria": "cpe:2.3:h:cisco:4351_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7DE02DBE-EAD5-4F37-8AB7-DF46A605A0E2"}, {"criteria": "cpe:2.3:h:cisco:4431_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5720462A-BE6B-4E84-A1A1-01E80BBA86AD"}, {"criteria": "cpe:2.3:h:cisco:4451-x_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "818CEFA6-208C-43C3-8E43-474A93ADCF21"}, {"criteria": "cpe:2.3:h:cisco:4461_integrated_services_router:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E8B60888-6E2B-494E-AC65-83337661EE7D"}, {"criteria": "cpe:2.3:h:cisco:csr_1000v:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF8B0B49-2C99-410B-B011-5B821C5992FB"}, {"criteria": "cpe:2.3:h:cisco:isa_3000:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9510E97A-FD78-43C6-85BC-223001ACA264"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:snort:snort:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "715F9721-D26C-4086-873F-837D0FCAF1A5", "versionEndExcluding": "2.9.17"}], "operator": "OR"}]}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx64_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BCF0950-162A-4E47-BA2A-43701EA7782E"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx64:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BE749570-1EA6-4734-B96A-D02B3BA3A756"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx64w_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15CD8683-DFB3-45E3-B6E2-92AFD846B0BA"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx64w:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B1038F5F-020D-41FD-9C3D-F2685F1EA916"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx67_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FF993C79-4C7F-4B99-B8BB-3996C4F3D8F0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx67:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2702FE73-E4AC-45C7-A212-44D783720798"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx67c_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C6A8AAC-9813-45C9-8C69-0579C0ADA0C3"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx67c:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E9725A9F-B9B9-4784-AEEA-A5E5CE0A41F3"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx67w_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B2F5CB3-1AE0-4905-A28B-090FDA56622E"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx67w:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F2529662-8A54-4DFC-80E7-922CF22DE2F3"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx68_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24AB6590-8775-4744-BF84-892F0BD10225"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx68:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2F6B4B5E-4FBB-48A9-B828-00C8AB479FB8"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx68cw_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39884334-73AF-4E98-B05A-20FFF82B5DF1"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx68cw:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "18E682AA-05AD-483F-915F-A2B2C98233B7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx68w_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "85EF67F0-973F-4FD1-8077-CE68D2AB1149"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx68w:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "03F9C184-3811-4A26-846D-54ECE7CF939F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx100_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "77C0B39F-AE49-44D7-8951-9DB0464FE43B"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx100:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4D4DE139-CCB5-4BDD-8827-07348B8F0FF2"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx84_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8398495B-47DB-4A16-AF8C-053685D5DD9C"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx84:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B5A4239D-E115-4368-895A-002BBD94F243"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx250_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90EC4BA2-0FA2-4841-9AB1-3FC92D22530D"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx250:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2D6CBE98-6B20-4F05-8871-0BEAD1D351B0"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:cisco:meraki_mx450_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A685A8D6-9B97-46B3-8087-0D44EE0D65AD"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:cisco:meraki_mx450:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "1B35EB71-8584-4803-A438-AEC406FD8445"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "ykramarz@cisco.com"}