Short Name |
APP:CISCO:SECURITY-AGENT-CE |
---|---|
Severity |
Major |
Recommended |
No |
Recommended Action |
Drop |
Category |
APP |
Keywords |
Cisco Security Agent Management Center Code Execution |
Release Date |
2014/05/02 |
Update Number |
2371 |
Supported Platforms |
idp-4.0+, isg-3.4+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against Cisco Security Agent. Successful exploitation would result in execution of arbitrary code on the vulnerable host under the context of the SYSTEM user.
Cisco Security Agent is prone to a remote code-execution service vulnerability. Successful exploits will allow attackers to modify agent policies and system configuration and perform other administrative tasks, resulting in the complete compromise of an affected device. Failed exploit attempts will result in a denial-of-service condition. This issue is tracked by Cisco Bug ID CSCtj51216.