Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2018-15443

A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects certain types of TCP traffic. The vulnerability is due to incorrect TCP retransmission handling. An attacker could exploit this vulnerability by sending a crafted TCP connection request through an affected device. A successful exploit could allow the attacker to bypass configured IPS rules and allow uninspected traffic onto the network.

SeverityMEDIUM
CVSS5.8
CWECWE-400
KEV
Published
Modified

Related Products

Product Advisory Evidence
Intrusion Prevention System (IPS) cisco-sa-20181107-fde-tcp-bypass Cisco OpenVuln
Cisco Secure Firewall Management Center (FMC) cisco-sa-20181107-fde-tcp-bypass Cisco OpenVuln
Cisco Firepower Management Center cisco-sa-20181107-fde-tcp-bypass Cisco OpenVuln