Vulnerability Description
A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass a configured rule, allowing traffic onto a network that should have been blocked. This vulnerability is due to improper detection of malicious traffic when the traffic is encoded with a specific content format. An attacker could exploit this vulnerability by using an affected device to connect to a malicious server and receiving crafted HTTP responses. A successful exploit could allow the attacker to bypass an explicit block rule and receive traffic that should have been rejected by the device.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Asyncos | 11.7.0-406 |
| Cisco | S195 | - |
| Cisco | S395 | - |
| Cisco | S695 | - |
| Cisco | Web Security Appliance S170 | - |
| Cisco | Web Security Appliance S190 | - |
| Cisco | Web Security Appliance S380 | - |
| Cisco | Web Security Appliance S390 | - |
| Cisco | Web Security Appliance S680 | - |
| Cisco | Web Security Appliance S690 | - |
| Cisco | Web Security Appliance S690X | - |
Related Weaknesses (CWE)
References
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/ciVendor Advisory
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/ciVendor Advisory
FAQ
What is CVE-2023-20215?
CVE-2023-20215 is a vulnerability with a CVSS score of 5.8 (MEDIUM). A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass a configured rule, allowing traffic onto a ne...
How severe is CVE-2023-20215?
CVE-2023-20215 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-20215?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Asyncos, Cisco S195, Cisco S395, Cisco S695, Cisco Web Security Appliance S170.