A tampered bootstrap file loaded during initial SD-WAN or SD-Routing setup lets an already-authenticated local user on a Cisco IOS XE device write arbitrary files to the underlying OS.
Posts tagged: Cisco
Cisco IOS XE Software for Cisco ASR 903 Aggregation Services Routers ARP Denial
An unauthenticated attacker on the same network segment can flood an ASR 903 router with crafted ARP messages, exhausting memory and forcing a route switch processor reload.
Cisco IOS XE Wireless Controller Software Cisco Discovery Protocol Denial of
An unauthenticated attacker within radio or wired reach of a joined access point can send a malformed CDP packet that crashes the wireless controller, dropping the entire Wi-Fi network it manages.
Cisco IOS XE Wireless Controller Software Unauthorized User Deletion Vulnerability
A low-privileged lobby ambassador account on Cisco IOS XE Wireless Controllers can be used to delete any user account, including administrator ones, due to weak access control in that web interface.
Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Denial of Service Vulnerabilities
Five separate flaws in the AnyConnect VPN server on Meraki MX and Z series gateways let an unauthenticated attacker drop existing SSL VPN sessions and block new ones from connecting.
Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Session Takeover
Weak randomness and a race condition in the AnyConnect VPN login process on Meraki MX and Z Series devices let a remote attacker without credentials hijack or block another user’s VPN session.
Cisco Nexus Dashboard Fabric Controller SSH Host Key Validation Vulnerability
Cisco NDFC fails to properly validate SSH host keys when talking to the switches it manages, letting a network-positioned attacker impersonate a device and harvest the credentials NDFC uses to log in.
Cisco Secure Network Analytics Manager API Authorization Vulnerability
A low-privileged authenticated user can abuse an under-protected API in Cisco Secure Network Analytics Manager to fabricate findings, letting them mask real alerts or trigger false ones.
Cisco Secure Network Analytics Manager Privilege Escalation Vulnerability
An authenticated administrator on Cisco Secure Network Analytics Manager or its virtual variant can send crafted input to the web management interface and run arbitrary commands as root on the host OS.
Cisco Unified Communications Products Command Injection Vulnerability
An authenticated CLI administrator on several Cisco Unified Communications platforms can craft command arguments that break out to root on the underlying OS, with no workaround available.