Cisco Updates
3114Warning Date
Severity Level
Warning Number
Target Sector
21 November, 2019
● Medium
2019-642
All
Description:
Cisco has released security updates to address multiple vulnerabilities in the different affected products.
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Obtain sensitive information
- Denial of Service (DoS) remotely
- Execute arbitrary code
- SQL Injection remotely
- Command Injection remotely
- Privilege escalation
- Bypass security restriction
- Cross-site scripting (XSS) remotely
- Cross-site request forgery (CSRF)
Best practice and Recommendations:
The CERT team encourages users to review Cisco security advisory and apply the necessary updates: https://tools.cisco.com/security/center/publicationListing.x