A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects certain types of TCP traffic. The vulnerability is due to incorrect TCP retransmission handling. An attacker could exploit this vulnerability by sending a crafted TCP connection request through an affected device. A successful exploit could allow the attacker to bypass configured IPS rules and allow uninspected traffic onto the network.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2018-11-08T17:00:00Z
Updated: 2024-11-26T14:22:11.255Z
Reserved: 2018-08-17T00:00:00
Link: CVE-2018-15443
Vulnrichment
Updated: 2024-08-05T09:54:03.565Z
NVD
Status : Modified
Published: 2018-11-08T17:29:00.653
Modified: 2024-11-21T03:50:48.860
Link: CVE-2018-15443
Redhat
No data.