CVE-2018-0281 describes a denial-of-service vulnerability in Cisco Firepower System Software, specifically affecting the Snort detection engine. An unauthenticated, remote attacker can exploit this by sending a crafted TLS connection setup request, causing the Snort engine to restart due to improper handling of a TLS extension. This vulnerability has a CVSS score of 5.8 (Medium), indicating a low attack complexity and no user interaction required, with the primary impact being a brief service disruption. There is currently no evidence of active exploitation, nor is public exploit code available in Metasploit or ExploitDB, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:secure_firewall_management_center:6.1.0:*:*:*:*:*:*:* | ||
6.2.0CPE matchmatch criteria | cpe:2.3:a:cisco:secure_firewall_management_center:6.2.0:*:*:*:*:*:*:* | ||
6.2.1CPE matchmatch criteria | cpe:2.3:a:cisco:secure_firewall_management_center:6.2.1:*:*:*:*:*:*:* | ||
6.2.2CPE matchmatch criteria | cpe:2.3:a:cisco:secure_firewall_management_center:6.2.2:*:*:*:*:*:*:* | ||
6.2.3CPE matchmatch criteria | cpe:2.3:a:cisco:secure_firewall_management_center:6.2.3:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.