Snort
snort
18 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (18)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Cisco Snort3Firepower Threat Defense Ios XeSnortNov 21, 2024 Nov 1, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerabilit...Show more |
2Cisco Snort4Firepower Threat Defense Secure Firewall Management CenterSnort+1 moreNov 26, 2024 Oct 27, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine processes ICMP traffic that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an...Show more |
2Cisco Snort3Firepower Threat Defense Ios XeSnortNov 21, 2024 Apr 29, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrec...Show more |
2Cisco Snort4Firepower Threat Defense Ios XeSecure Firewall Management Center+1 moreNov 26, 2024 Jan 13, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerab...Show more |
2Cisco Snort16Firepower Threat Defense Ios XeMeraki Mx100 Firmware+13 moreNov 26, 2024 Jan 13, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file p...Show more |
2Cisco Snort4Firepower Threat Defense Ios XeSecure Firewall Management Center+1 moreNov 26, 2024 Jan 13, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrec...Show more |
2Cisco Snort2Firepower Threat Defense SnortNov 21, 2024 Oct 21, 2020 N/A· v4 5.8 MEDIUM· v3 5.0 MEDIUM· v2 Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured File Policy for HTTP. The vulnerability is due to incorrec...Show more |
Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse tcapi.dll that is located in the same folder on a remote f...Show more |
Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted IPv6 packet that uses the (1) TCP or (2) ICMP protocol. |
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for...Show more |
The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module loaded, allows remote attackers to cause a denial of service (segmentation fault a...Show more |
2Snort Sourcefire2Intrusion Sensor SnortApr 23, 2026 Feb 20, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic. |
Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locations via crafted GRE packets, which may cause corruption of log files o...Show more |
Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote attackers to cause a denial of service (CPU consumption and detection outage) via...Show more |
Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets. |
Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash). |
4Cisco EnterasysIss+1 more6Catalyst 6000 Intrusion Detection System Module DragonRealsecure Network Sensor+3 moreApr 16, 2026 Oct 30, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion Detection System Module, (3) Dragon Sensor 4.x, (4) Snort before 1.8.1, (5) ISS RealSecur...Show more |
Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that...Show more |