PT-2024-9144 · Cisco · Snort

Published

2024-10-23

·

Updated

2025-08-11

·

CVE-2024-20342

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions: Cisco products (affected versions not specified)
Description: The issue is related to an incorrect connection count comparison in the rate filtering feature of the Snort detection engine. This could allow an unauthenticated, remote attacker to bypass a configured rate limiting filter by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter, potentially allowing unintended traffic to enter the network protected by the affected device.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-10831
CVE-2024-20342

Affected Products

Snort