>> Cisco Management Center for IPS Sensors (IPS MC) Security Bypass
Title : Cisco Management Center for IPS Sensors (IPS MC) Security Bypass VUPEN ID : VUPEN/ADV-2005-2266 CVE ID : CVE-2005-3427
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-11-02
Technical Description
A vulnerability has been identified in Cisco Management Center for IPS Sensors (IPS MC), which could be exploited by attackers to bypass security policies. This flaw is due to an error when generating the Cisco IOS IPS (Intrusion Prevention System) configuration file, which could result in some signatures belonging to certain classes being disabled during the configuration deployment process, which will cause an incomplete analysis of network traffic traversing the Cisco IOS IPS device.
Note : Only signatures using either the STRING.TCP or STRING.UDP signature micro-engine (SME) are affected by this vulnerability.