PT-2023-7545 · Cisco · Cisco Asa+1

·

CVE-2023-20275

·

Publicado

2023-12-05

·

Atualizado

2024-01-25

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Cisco Adaptive Security Appliance (ASA) Software (affected versions not specified) Cisco Firepower Threat Defense (FTD) Software (affected versions not specified)
Description A vulnerability in the AnyConnect SSL VPN feature could allow an authenticated, remote attacker to send packets with another VPN user's source IP address. This is due to improper validation of the packet's inner source IP address after decryption. An attacker could exploit this by sending crafted packets through the tunnel, allowing them to impersonate another VPN user's IP address. However, the attacker cannot receive return packets.
Recommendations For Cisco Adaptive Security Appliance (ASA) Software, update to a version that includes the fix for this issue. For Cisco Firepower Threat Defense (FTD) Software, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to the AnyConnect SSL VPN feature until a patch is available.

Correção

Insufficient Verification of Data Authenticity

Information Disclosure

Origin Validation Error

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-08600
CVE-2023-20275

Produtos afetados

Cisco Asa
Cisco Ftd