CVE Database
/

CVE-2022-20685

Back to search

CVE-2022-20685

Published: Nov 15, 2024

Modified: Jan 27, 2025

PUBLISHED

CVSS v3.1

7.5

HIGH

Description

A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer overflow while processing Modbus traffic. An attacker could exploit this vulnerability by sending crafted Modbus traffic through an affected device. A successful exploit could allow the attacker to cause the Snort process to hang, causing traffic inspection to stop.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

VendorProductVersions

Cisco

Cisco Cyber Vision

affected
3.0.0
affected
3.0.2
affected
3.0.3
affected
3.0.1
affected
3.1.0

+12 more versions

Cisco

Cisco Firepower Threat Defense Software

affected
6.2.3.14
affected
6.4.0.1
affected
6.2.3.7
affected
6.2.3
affected
6.4.0.2

+39 more versions

Cisco

Cisco UTD SNORT IPS Engine Software

affected
3.17.1S
affected
16.12.3
affected
Fuji-16.9.5
affected
16.12.4
affected
17.3.1a

+38 more versions

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now