Your review has been sent successfully

Cisco Alert

3305
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

14 April, 2022

● High

2022-4668

All

Description:

Cisco has released security warnings to address several vulnerabilities in the following products:

  • 3504 Wireless Controller
  • 5520 Wireless Controller
  • 8540 Wireless Controller
  • Mobility Express
  • Virtual Wireless Controller (vWLC)
  • Cisco SD-WAN vManage Software
  • SD-WAN vBond Orchestrator Software
  • SD-WAN vEdge Cloud Routers
  • SD-WAN vEdge Routers
  • SD-WAN vManage Software
  • SD-WAN vSmart Controller Software
  • Cisco IOS XE Software
  • Cisco ASR 9000 Series
  • Catalyst 9300 Series Switches
  • Catalyst 9400 Series Switches
  • Catalyst 9500 Series Switches
  • Catalyst 9800 Embedded Wireless Controllers for Catalyst 9300, 9400, and 9500 Series Switches
  • Catalyst 9800 Series Wireless Controllers
  • Catalyst 9800-CL Wireless Controllers for Cloud
  • Embedded Wireless Controllers on Catalyst Access Points
  • Cisco 1000 Series
  • Cisco IOS Software
  • 1000 Series Integrated Services Routers
  • 4000 Series Integrated Services Routers
  • ASR 1001-X Routers
  • ASR 1002-X Routers
  • Catalyst 8300 Series Routers
  • Catalyst 8500 Series Routers
  • Catalyst 8000V Edge Software
  • Cloud Services Router 1000V Series
  • isco Embedded Wireless Controller with Catalyst Access Points Software
  • 800 Series Industrial Integrated Services Routers (Industrial ISRs)
  • 800 Series Integrated Services Routers (ISRs)
  • 1000 Series Connected Grid Router (CGR1000) Compute Modules
  • IC3000 Industrial Compute Gateways
  • Industrial Ethernet (IE) 4000 Series Switches
  • IOS XE-based devices configured with IOx
  • IR510 WPAN Industrial Routers
Threats:

Attacker could exploit these vulnerabilities by doing the following:

  • Denial of service attack (DoS)
  • Cross-site scripting (XSS)
Best practice and Recommendations:

The CERT team encourages users to review Cisco security advisory and apply the necessary mitigations and updates:

Last updated at 14 April, 2022

Rate the content

rate-icon
up icon