CVE-2023-20267
CVSS V2 None
CVSS V3 None
Description
A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attacker to potentially bypass IP address restrictions. This vulnerability exists because the configuration for IP geolocation rules is not parsed properly. An attacker could exploit this vulnerability by spoofing an IP address until they bypass the restriction. A successful exploit could allow the attacker to bypass location-based IP address restrictions.
Overview
- CVE ID
- CVE-2023-20267
- Assigner
- cisco
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-11-01T17:16:02.332Z
- Last Modified Date
- 2024-01-25T16:58:36.206Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftdsnort3sip-bypass-LMz2ThKn |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-20267 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-20267 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 07:40:22 | Added to TrackCVE |