Cisco Firepower Threat Defense Software Rate Filter Bypass Vulnerability
CVE-2024-20342

8.6HIGH

Key Information:

Vendor

Cisco

Vendor
CVE Published:
23 October 2024

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2024-20342?

Multiple Cisco products encounter a vulnerability in the rate filtering capability of the Snort detection engine, which can be exploited by an unauthenticated remote attacker. This issue arises from an incorrect comparison in connection counts, permitting an attacker to send traffic that exceeds the configured rate limit. Successfully exploiting this vulnerability allows the attacker to bypass the rate filter, potentially enabling unauthorized traffic to breach the network security. Organizations using affected Cisco devices should review their security policies and ensure configurations are updated to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Cisco Firepower Threat Defense Software 6.7.0

Cisco Firepower Threat Defense Software 6.7.0.1

Cisco Firepower Threat Defense Software 6.7.0.2

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

.