Medium · published November 1, 2023
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a flaw in the FTP module of the Snort detection engine. An attacker could exploit this vulnerability by sending crafted FTP traffic through an affected device. A successful exploit could allow the attacker to bypass FTP inspection and deliver a malicious payload.
| Product | Versions | Fixed in |
|---|---|---|
| cisco/secure_firewall_threat_defense | < 6.4.0.17 | 6.4.0.17 |
| cisco/secure_firewall_threat_defense | ≥ 6.5.0, < 7.0.6 | 7.0.6 |
| cisco/secure_firewall_threat_defense | ≥ 7.1.0, < 7.2.4 | 7.2.4 |
| cisco/secure_firewall_threat_defense | ≥ 7.3.0, < 7.3.1.2 | 7.3.1.2 |
| cisco/secure_firewall_threat_defense | ≥ 6.7.0, < 7.0.5 | 7.0.5 |
| cisco/secure_firewall_threat_defense | ≥ 7.1.0, < 7.1.0.3 | 7.1.0.3 |
| cisco/secure_firewall_threat_defense | ≥ 7.2.0, < 7.2.1 | 7.2.1 |
| cisco/cyber_vision | < 4.1.3 | 4.1.3 |
| cisco/unified_threat_defense | ≥ 17.3, < 17.3.8 | 17.3.8 |
| cisco/unified_threat_defense | ≥ 17.6, < 17.6.6 | 17.6.6 |
| cisco/unified_threat_defense | ≥ 17.9, < 17.9.4 | 17.9.4 |
| cisco/unified_threat_defense | ≥ 17.11, < 17.11.1a | 17.11.1a |
| cisco/unified_threat_defense | ≥ 17.12, < 17.12.1a | 17.12.1a |
| cisco/meraki_mx_security_appliance_firmware | all versions | — |