CVE-2023-20246
published 2023-11-01CVE-2023-20246: Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the…
PriorityP431medium5.3CVSS 3.1
AVNACLPRNUINSUCNILAN
EPSS
0.56%
42.8th percentile
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system.
This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability by establishing a connection to an affected device. A successful exploit could allow the attacker to bypass configured access control rules on the affected system.
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_firepower_threat_defense_software | — | — |
| cisco | cisco_umbrella_insights_virtual_appliance | — | — |
| cisco | firepower_threat_defense | 7.0.0 – 7.3.1.1 | — |
| cisco | ios_xe | >= 17.12 < 17.12.2 | 17.12.2 |
| cisco | products_snort_3 | — | — |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
vendor_cisco5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9hv9-j7p5-6w36: Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypas
ghsa_unreviewed·2023-11-01
CVE-2023-20246 [MEDIUM] CWE-290 GHSA-9hv9-j7p5-6w36: Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypas
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability by establishing a connection to an affected device. A successful exploit could allow the attacker to bypass configured access control rules on the affected system.
Cisco
Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
vendor_cisco·2023-11-01·CVSS 5.8
CVE-2023-20246 [MEDIUM] CWE-290 Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system.
This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability by establishing a connection to an affected device. A successful exploit could allow the attacker to bypass configured access control rules on the affected system.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:https://sec.cloudapps.cisco.c
Cisco
Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
vendor_cisco·CVSS 3.1
CVE-2023-20246 Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
CVE-2023-20246: Multiple Cisco Products Snort 3 Access Control Policy Bypass Vulnerability
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability by establishing a connection to an affected device. A successful exploit could allow the attacker to bypass configured access control rules on the affected system. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.1
CWE: CWE-290, CWE-290
Bug IDs: CSCwe15280, CSCwe83859
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-11-01
Published