Cisco Alert
3380Warning Date
Severity Level
Warning Number
Target Sector
12 January, 2023
● Critical
2023-5419
All
Cisco has released security updates to address multiple vulnerabilities in the following products:
- Cisco Small Business Routers:
- RV016
- RV042
- RV042G
- RV082
- Cisco IP Phone:
- 7800
- 8800
- Cisco Industrial Network Director
- Cisco BroadWorks Application Delivery Platform and Xtended Services Platform
An attacker could exploit these vulnerabilities by doing the following:
- Denial of Service (DoS)
- Cross-Site Scripting attacks (XSS)
- Authentication Bypass
- Execute Arbitrary Code
The CERT team encourages users to review Cisco security advisory and update the affected products:
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sbr042-multi-vuln-ej76Pke5
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ip-phone-auth-bypass-pSqxZRPR
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ind-fZyVjJtG
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-dos-HpkeYzp