CVE-2021-1236: Multiple Cisco Products Snort Application Detection Engine Policy Bypass Vulnerability
Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerability is due to a flaw in the detection algorithm. An attacker could exploit this vulnerability by sending crafted packets that would flow through an affected system. A successful exploit could allow the attacker to bypass the configured policies and deliver a malicious payload to the protected network.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2021-1236.
Which products are affected by this vulnerability?
Multiple Cisco products including Cisco IOS XE and Cisco Firepower Management Center are affected.
What is the severity of CVE-2021-1236?
The severity of CVE-2021-1236 is medium with a CVSS score of 5.3.
How can an attacker exploit CVE-2021-1236?
An attacker can exploit CVE-2021-1236 by bypassing the configured policies on an affected system.
How can I fix CVE-2021-1236?
To fix CVE-2021-1236, update the affected Cisco products with the appropriate security patches.