VDB

CVE-2018-0237

CVE-2018-0237 PUBLISHED CVSS 5 MEDIUM

A vulnerability in the file type detection mechanism of the Cisco Advanced Malware Protection (AMP) for Endpoints macOS Connector could allow an unauthenticated, remote attacker to bypass malware detection. The vulnerability occurs because the software relies on only the file extension for detecting DMG files. An attacker could exploit this vulnerability by sending a DMG file with a nonstandard extension to a device that is running an affected AMP for Endpoints macOS Connector. An exploit could allow the attacker to bypass configured malware detection. Cisco Bug IDs: CSCve34034.

EPSS 0.61% · 70.1th percentile

Risk Scores

CVSS 2.0
5
EPSS Score
0.61%
70.1th percentile

Affected Products

VendorProductVersions
n/aCisco AMP for EndpointsCisco AMP for Endpoints
ciscoadvanced_malware_protection_for_endpoints*

Timeline

  • Apr 19, 2018 CVE Published
  • Dec 31, 2018 PoC Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›