Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2024-20363

Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System (IPS) rule engine that could allow an unauthenticated, remote attacker to bypass the configured rules on an affected system. This vulnerability is due to incorrect HTTP packet handling. An attacker could exploit this vulnerability by sending crafted HTTP packets through an affected device. A successful exploit could allow the attacker to bypass configured IPS rules and allow uninspected traffic onto the network.

SeverityMEDIUM
CVSS5.8
CWECWE-290
KEV
Published
Modified

Related Products

Product Advisory Evidence
Intrusion Prevention System (IPS) cisco-sa-snort3-ips-bypass-uE69KBMd Cisco OpenVuln
Cisco UTD SNORT IPS Engine Software cisco-sa-snort3-ips-bypass-uE69KBMd Cisco OpenVuln
Cisco Secure Firewall Threat Defense (FTD) Software cisco-sa-snort3-ips-bypass-uE69KBMd Cisco OpenVuln
Cisco Secure Firewall 4200 Series cisco-sa-snort3-ips-bypass-uE69KBMd Cisco OpenVuln