Medium severity5.8NVD Advisory· Published Oct 23, 2024· Updated Aug 11, 2026
CVE-2024-20342
CVE-2024-20342
Description
Multiple Cisco products are affected by a vulnerability in the rate filtering feature of the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured rate limiting filter.
This vulnerability is due to an incorrect connection count comparison. An attacker could exploit this vulnerability by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter. This could allow unintended traffic to enter the network protected by the affected device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:cisco:secure_firewall_threat_defense:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:secure_firewall_threat_defense:*:*:*:*:*:*:*:*range: <7.0.6.2
- cpe:2.3:a:cisco:secure_firewall_threat_defense:7.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:secure_firewall_threat_defense:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:snort:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cisco:snort:*:*:*:*:*:*:*:*range: >=3.0.0.0,<3.1.74.0
- (no CPE)
- Range: 7.0.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.