CVE Published: 08/11/2018 |
CVE Updated: 26/11/2024 |
CVE Year: 2018 Source: cisco |
Vendor: Cisco |
Product: Cisco Firepower Management Center Status : PUBLISHED
CVE-2018-15443 Description
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects certain types of TCP traffic. The vulnerability is due to incorrect TCP retransmission handling. An attacker could exploit this vulnerability by sending a crafted TCP connection request through an affected device. A successful exploit could allow the attacker to bypass configured IPS rules and allow uninspected traffic onto the network.