Description
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured. The vulnerability is due to incorrect counting of the percentage of dropped traffic. An attacker could exploit this vulnerability by sending network traffic to a targeted device. An exploit could allow the attacker to bypass configured file action policies, and traffic that should be dropped could be allowed into the network. Cisco Bug IDs: CSCvf86435.
Published: 2018-04-19
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-1077 A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured. The vulnerability is due to incorrect counting of the percentage of dropped traffic. An attacker could exploit this vulnerability by sending network traffic to a targeted device. An exploit could allow the attacker to bypass configured file action policies, and traffic that should be dropped could be allowed into the network. Cisco Bug IDs: CSCvf86435.
History

Fri, 29 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Cisco Amp 7150 Amp 8150 Firepower Appliance 7010 Firepower Appliance 7020 Firepower Appliance 7030 Firepower Appliance 7050 Firepower Appliance 7110 Firepower Appliance 7115 Firepower Appliance 7120 Firepower Appliance 7125 Firepower Appliance 8120 Firepower Appliance 8130 Firepower Appliance 8140 Firepower Appliance 8250 Firepower Appliance 8260 Firepower Appliance 8270 Firepower Appliance 8290 Firepower Appliance 8350 Firepower Appliance 8360 Firepower Appliance 8370 Firepower Appliance 8390 Firepower Management Center 1000 Firepower Management Center 2000 Firepower Management Center 2500 Firepower Management Center 4000 Firepower Management Center 4500 Firepower Threat Defense Firesight Management Center 1500 Firesight Management Center 3500 Firesight Management Center 750 Ngips Virtual Appliance
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-29T15:16:11.647Z

Reserved: 2017-11-27T00:00:00.000Z

Link: CVE-2018-0254

cve-icon Vulnrichment

Updated: 2024-08-05T03:21:14.430Z

cve-icon NVD

Status : Modified

Published: 2018-04-19T20:29:01.127

Modified: 2024-11-21T03:37:49.460

Link: CVE-2018-0254

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses