Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the VPN configuration management of Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass VPN security due to unintended side effects of dynamic configuration changes that could allow an attacker to bypass configured policies. The vulnerability is due to incorrect management of the configured interface names and VPN parameters when dynamic CLI configuration changes are performed. An attacker could exploit this vulnerability by sending packets through an interface on the targeted device. A successful exploit could allow the attacker to bypass configured VPN policies. Cisco Bug IDs: CSCvh49388.
CVSS Information
N/A
Vulnerability Type
保护机制失效
Vulnerability Title
Cisco FireSIGHT System Software 安全特征问题漏洞
Vulnerability Description
Cisco FireSIGHT System Software是美国思科(Cisco)公司的一套管理中心软件,它支持集中管理采用FirePOWER Services的Cisco ASA和思科FirePOWER网络安全设备的网络安全和运行功能的软件。 Cisco FireSIGHT System Software中的VPN配置管理存在安全特征问题漏洞,该漏洞源于在动态的CLI配置被更改时,程序没有正确的管理被配置的界面名和VPN参数。远程攻击者可通过发送数据包利用该漏洞绕过被配置的VPN策略。
CVSS Information
N/A
Vulnerability Type
N/A