Improper access control in Cisco Firewall Threat Defense (FTD) - CVE-2021-34754
Published: October 29, 2021
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic. A remote attacker can bypass configured access control and intrusion policies that should be activated for the ENIP packet.