CVE-2005-1517: High severity Cisco Firewall Services Module vulnerability
Published May 11, 2005
·Updated
Unknown vulnerability in Cisco Firewall Services Module (FWSM) 2.3.1 and earlier, when using URL, FTP, or HTTPS filtering exceptions, allows certain TCP packets to bypass access control lists (ACLs).
Affected Software
1 affected component
Cisco Firewall Services Module<=2.3\(1\)
Event History
May 11, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1517?
CVE-2005-1517 has a medium severity rating as it allows certain TCP packets to bypass existing access control lists.
2
How do I fix CVE-2005-1517?
To fix CVE-2005-1517, upgrade the Cisco Firewall Services Module to version 2.3.2 or later.
3
What specific Cisco products are affected by CVE-2005-1517?
CVE-2005-1517 affects Cisco Firewall Services Module versions 2.3.1 and earlier.
4
What types of filtering exceptions are involved in CVE-2005-1517?
CVE-2005-1517 involves URL, FTP, or HTTPS filtering exceptions that can lead to inadequate access control.
5
Can CVE-2005-1517 be exploited remotely?
Yes, CVE-2005-1517 can be exploited remotely due to the nature of the filtering exceptions in the affected Cisco Firewall Services Module.