THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-20359 (MEDIUM 6.5) — Multiple Cisco products are affected by a vulnerability in the Snort 3 HTTP Decoder that could allow an unauthenticated, remote attacker to cause the disclosure of possible sensitive data or cause the Snort 3 Detection Engine to crash. This vulnerability is due to an error in

[NVD] CVE-2025-20359 (MEDIUM 6.5) — Multiple Cisco products are affected by a vulnerability in the Snort 3 HTTP Decoder that could allow an unauthenticated, remote attacker to cause the disclosure of possible sensitive data or cause the Snort 3 Detection Engine to crash. This vulnerability is due to an error in

lownvdPublished 2025-10-15

CVE-2025-20359 CVSS: 6.5 MEDIUM Published: 2025-10-15T17:15:49.230

Multiple Cisco products are affected by a vulnerability in the Snort 3 HTTP Decoder that could allow an unauthenticated, remote attacker to cause the disclosure of possible sensitive data or cause the Snort 3 Detection Engine to crash.

This vulnerability is due to an error in the logic of buffer handling when the MIME fields of

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-20359