CVE-2021-1236Always-Incorrect Control Flow Implementation in Cisco Firepower Threat Defense

Severity
5.3MEDIUMNVD
EPSS
0.2%
top 57.85%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 13
Latest updateMar 25

Description

Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerability is due to a flaw in the detection algorithm. An attacker could exploit this vulnerability by sending crafted packets that would flow through an affected system. A successful exploit could allow the attacker to bypass the configured policies and deliver a malicious payload t

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages5 packages

🔴Vulnerability Details

11
GHSA
GHSA-hj38-j9jq-rjpp: Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker2022-05-24
GHSA
MantisBT CSV Injection unprivileged user access in csv_export.php2022-04-15
GHSA
Improper Neutralization of Formula Elements in a CSV File in Kimai 22022-04-09
GHSA
Arbitrary code execution in Magnolia CMS2022-02-12
GHSA
Improper Neutralization of Formula Elements in a CSV File in html-2-csv2021-11-30

📋Vendor Advisories

4
Red Hat
kernel: drm/amdgpu: Fix a use-after-free2024-03-25
Fortinet
An improper neutralization of formula elements in a csv file in Fortinet FortiManager version 6.4.3 and below, 6.2.7 and...2021-09-30
Cisco
Cisco Umbrella Link and CSV Formula Injection Vulnerabilities2021-04-07
Cisco
Multiple Cisco Products Snort Application Detection Engine Policy Bypass Vulnerability2021-01-13
CVE-2021-1236 — Cisco vulnerability | cvebase