IT

Tracker / CVE-2023-20246

CVE-2023-20246

Medium 5.8

Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability by establishing a connection to an affected device. A successful exploit could allow the attacker to bypass configured access control rules on the affected system.

Affected products and versions

cisco ios_xe · 17.12 → 17.12.2
cisco secure_firewall_threat_defense · 7.0.0 → 7.3.1.1
snort snort · 3.0.0 → 3.1.57.0

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References