Cisco Firepower Threat Defense Packet Processor Crafted Packet denial of service – DigitalMunition




Exploit Cybersecurity study of the dark web exposes vulnerability to machine identities -- ScienceDaily

Published on May 4th, 2019 📆 | 8592 Views ⚑

0

Cisco Firepower Threat Defense Packet Processor Crafted Packet denial of service

CVSS Meta Temp Score Current Exploit Price (≈)
5.3 $5k-$25k

A vulnerability has been found in Cisco Firepower Threat Defense (Firewall Software) and classified as problematic. Affected by this vulnerability is a functionality of the component Packet Processor. The manipulation as part of a Crafted Packet leads to a denial of service vulnerability. The CWE definition for the vulnerability is CWE-404. As an impact it is known to affect availability.

The weakness was disclosed 05/03/2019 as cisco-sa-20190501-frpwr-dos as confirmed advisory (Website). It is possible to read the advisory at tools.cisco.com. This vulnerability is known as CVE-2019-1703 since 12/06/2018. The attack can be launched remotely. The exploitation doesn’t need any form of authentication. The technical details are unknown and an exploit is not publicly available. The pricing for an exploit might be around USD $5k-$25k at the moment (estimation calculated on 05/03/2019).

There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

The entries 134343, 134345 and 134348 are pretty similar.

Vendor

Name

VulDB Meta Base Score: 5.3
VulDB Meta Temp Score: 5.3

VulDB Base Score: 5.3
VulDB Temp Score: 5.3
VulDB Vector: ?
VulDB Reliability: ?


VulDB Base Score: ?
VulDB Temp Score: ?
VulDB Reliability: ?
Class: Denial of service (CWE-404)
Local: No
Remote: Yes

Availability: ?
Status: Not defined

Price Prediction: ?
Current Price Estimation: ?

Threat Intelligenceinfoedit

Threat: ?
Adversaries: ?
Geopolitics: ?
Economy: ?
Predictions: ?
Remediation: ?Recommended: no mitigation known
0-Day Time: ?12/06/2018 CVE assigned
05/03/2019 +148 days Advisory disclosed
05/03/2019 +0 days VulDB entry created
05/03/2019 +0 days VulDB last updateAdvisory: cisco-sa-20190501-frpwr-dos
Status: Confirmed

CVE: CVE-2019-1703 (?)
See also: ?

Created: 05/03/2019 10:09 PM
Complete: ?

Comments

No comments yet. Please log in to comment.

Enable the mail alert feature now!

https://vuldb.com/?id.134347

Download WordPress Themes Free
Download WordPress Themes
Download Best WordPress Themes Free Download
Download WordPress Themes Free
download udemy paid course for free

Tagged with:



Leave a Reply ✍


loading...