CVE-2021-34793Cisco · Adaptive_security_appliance
Vulnerability data via NVD (ingested)
A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software operating in transparent mode could allow an unauthenticated, remote attacker to poison MAC address tables, resulting in a denial of service (DoS) vulnerability. This vulnerability is due to incorrect handling of certain TCP segments when the affected device is operating in transparent mode. An attacker could exploit this vulnerability by sending a crafted TCP segment through an affected device. A successful exploit could allow the attacker to poison the MAC address tables in adjacent devices, resulting in network disruption.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2021-34793product:"Cisco Adaptive Security Appliance"http.html:"Adaptive Security Appliance"More intel sources (5)
vuln:CVE-2021-34793vulnerabilities.cve_id: CVE-2021-34793CVE-2021-34793CVE-2021-34793"CVE-2021-34793" exploit -site:nvd.nist.gov