HTTP Attack Detection Bypass in Cisco FireSIGHT Management Center
CVE-2015-6427
Currently unrated
Summary
The vulnerability in Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection mechanism. This is achieved through an SSL session mishandled post-decryption, enabling attackers to evade Snort intrusion detection system rules. This security flaw poses a significant risk as it undermines the ability of the system to properly detect and respond to malicious HTTP traffic.
References
Timeline
Vulnerability published
Vulnerability Reserved