CVE-2017-3809
published 2017-02-03CVE-2017-3809: A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent…
PriorityP432medium5.8CVSS 3.0
AVNACLPRNUINSCCNILAN
EPSS
2.19%
80.6th percentile
A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent deployment of a complete and accurate rule base. More Information: CSCvb95281. Known Affected Releases: 6.1.0 6.2.0. Known Fixed Releases: 6.1.0.1 6.2.0.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firepower_management_center_incomplete_rule_set | — | — |
| cisco | secure_firewall_management_center | — | — |
| cisco | secure_firewall_management_center | — | — |
CVSS provenance
nvdv3.05.8MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_cisco5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firepower Management Center Incomplete Rule Set Vulnerability
vendor_cisco·2017-02-01·CVSS 5.8
CVE-2017-3809 [MEDIUM] CWE-20 Cisco Firepower Management Center Incomplete Rule Set Vulnerability
Cisco Firepower Management Center Incomplete Rule Set Vulnerability
A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent deployment of a complete and accurate rule base.
The vulnerability is due to a lack of condition checks in the rules engine. An attacker could exploit this vulnerability by spoofing certain Object IDs of Port objects. An exploit could allow the attacker to push an incomplete rule set.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170201-fmc
Cisco
Cisco Firepower Management Center Incomplete Rule Set Vulnerability
vendor_cisco·CVSS 3.0
CVE-2017-3809 Cisco Firepower Management Center Incomplete Rule Set Vulnerability
CVE-2017-3809: Cisco Firepower Management Center Incomplete Rule Set Vulnerability
A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent deployment of a complete and accurate rule base. The vulnerability is due to a lack of condition checks in the rules engine. An attacker could exploit this vulnerability by spoofing certain Object IDs of Port objects. An exploit could allow the attacker to push an incomplete rule set. There are no
CVSS: 3.0
CWE: CWE-20, CWE-20
Bug IDs: CSCvb95281
GHSA
GHSA-vm9g-p7f2-j795: A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prev
ghsa_unreviewed·2022-05-17
CVE-2017-3809 [MEDIUM] CWE-20 GHSA-vm9g-p7f2-j795: A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prev
A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent deployment of a complete and accurate rule base. More Information: CSCvb95281. Known Affected Releases: 6.1.0 6.2.0. Known Fixed Releases: 6.1.0.1 6.2.0.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/95941http://www.securitytracker.com/id/1037776https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170201-fmchttp://www.securityfocus.com/bid/95941http://www.securitytracker.com/id/1037776https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170201-fmc
2017-02-03
Published