J-Security Center

Title: Cisco Management Center for IPS Sensors Configuration Download Weakness

Severity: MODERATE

Description:

Cisco CiscoWorks VPN/Security Management (VMS) is a network management solution that includes Cisco Management Center for IPS Sensors (IPS MC).

A weakness exists in the Cisco Management Center for IPS Sensors component during the generation of Cisco Intrusion Prevention System (IPS) configuration files. This issue may result in some signatures belonging to certain classes not being enabled during the configuration deployment process.

As a result, some attacks may not be detected or blocked by the IPS device, resulting in a greater likelihood of successful attacks on the system.

Cisco IOS IPS devices configured by IPS MC 2.1 are prone to this issue. Cisco IDS/IPS solution, configured by either Cisco IPS MC v2.1, Cisco IDS MC, Cisco SDM or by using the Cisco IOS CLI are vulnerable as well.

Affected Products:

  • Cisco ASA (AIP) Security Services Module 0.0.0
  • Cisco Catalyst 6500/7600 (IDSM-2) Module 0.0.0
  • Cisco IDS MC 0.0.0
  • Cisco IDS Network Module (NM-CIDS-K9) 0.0.0
  • Cisco IOS CLI 0.0.0
  • Cisco IOS IDS 0.0.0
  • Cisco IPS 4200 Series Sensors
  • Cisco PIX/ASA IDS
  • Cisco SDM 0.0.0

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.