PT-2016-7705 · Cisco+2 · Cisco Advanced Malware Protection (Amp) For Networks - 7000 Series Appliances+10
Published
2016-12-14
·
Updated
2016-12-15
·
CVE-2016-9209
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco Adaptive Security Appliance (ASA) 5500-X Series with FirePOWER Services version 2.9.7.10
Cisco Advanced Malware Protection (AMP) for Networks - 7000 Series Appliances version 2.9.7.10
Cisco Advanced Malware Protection (AMP) for Networks - 8000 Series Appliances version 2.9.7.10
Cisco FirePOWER 7000 Series Appliances version 2.9.7.10
Cisco FirePOWER 8000 Series Appliances version 2.9.7.10
Cisco FirePOWER Threat Defense for Integrated Services Routers (ISRs) version 2.9.7.10
Cisco Next Generation Intrusion Prevention System (NGIPS) for Blue Coat X-Series version 2.9.7.10
Cisco Sourcefire 3D System Appliances version 2.9.7.10
Cisco Virtual Next-Generation Intrusion Prevention System (NGIPSv) for VMware version 2.9.7.10
Description
A vulnerability in TCP processing could allow an unauthenticated, remote attacker to download files that would normally be blocked.
Recommendations
For Cisco Adaptive Security Appliance (ASA) 5500-X Series with FirePOWER Services version 2.9.7.10, update to a fixed version.
For Cisco Advanced Malware Protection (AMP) for Networks - 7000 Series Appliances version 2.9.7.10, update to a fixed version.
For Cisco Advanced Malware Protection (AMP) for Networks - 8000 Series Appliances version 2.9.7.10, update to a fixed version.
For Cisco FirePOWER 7000 Series Appliances version 2.9.7.10, update to a fixed version.
For Cisco FirePOWER 8000 Series Appliances version 2.9.7.10, update to a fixed version.
For Cisco FirePOWER Threat Defense for Integrated Services Routers (ISRs) version 2.9.7.10, update to a fixed version.
For Cisco Next Generation Intrusion Prevention System (NGIPS) for Blue Coat X-Series version 2.9.7.10, update to a fixed version.
For Cisco Sourcefire 3D System Appliances version 2.9.7.10, update to a fixed version.
For Cisco Virtual Next-Generation Intrusion Prevention System (NGIPSv) for VMware version 2.9.7.10, update to a fixed version.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Blue Coat X-Series
Cisco Asa
Cisco Advanced Malware Protection (Amp) For Networks - 7000 Series Appliances
Cisco Advanced Malware Protection (Amp) For Networks - 8000 Series Appliances
Cisco Firepower 7000 Series Appliances
Cisco Firepower 8000 Series Appliances
Cisco Ftd
Cisco Next Generation Intrusion Prevention System (Ngips) For Blue Coat X-Series
Cisco Sourcefire 3D System Appliances
Cisco Virtual Next-Generation Intrusion Prevention System (Ngipsv) For Vmware
Vmware