Cisco Alert
3027Warning Date
Severity Level
Warning Number
Target Sector
5 April, 2023
● High
2023-5529
All
Cisco has released security updates to address multiple vulnerabilities in the following products:
- Cisco Evolved Programmable Network Manager (EPNM)
- Cisco Identity Services Engine (ISE)
- Cisco Prime Infrastructure
- Cisco Small Business RV Series Routers
- RV320 Dual Gigabit WAN VPN Routers
- RV325 Dual Gigabit WAN VPN Routers
- Secure Network Analytics Virtual Manager
- Stealthwatch Management Console 2200
An attacker could exploit these vulnerabilities by doing the following:
- Command Injection
- Elevate Privileges
- Execute Arbitrary Commands
The CERT team encourages users to review Cisco security advisory and update the affected products:
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-stealthsmc-rce-sfNBPjcS
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-rv32x-cmdinject-cKQsZpxL#vp
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-adeos-MLAyEcvk#vp