Your review has been sent successfully

Cisco Alert

3210
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

9 November, 2022

● High

2022-5353

All

Description:

Cisco has released security updates to address several vulnerabilities in the following products:

  • Cisco Adaptive Security Appliance (ASA) Software
    • dynamic access policies (DAP)
    • Simple Network Management Protocol (SNMP)
    • Cisco FirePOWER Software - FirePOWER Module
    • Cisco Secure Firewalls 3100 - Secure boot implementation
    • SSL/TLS client
  • Firepower Threat Defense (FTD)
    • Dynamic access policies (DAP)
    • Simple Network Management Protocol (SNMP)
    • Software SSH
    • Generic routing encapsulation (GRE)
    • Cisco Secure Firewalls 3100 - Secure boot implementation
    • SSL/TLS client
  • Cisco Firepower Management Center (FMC)
    • Software SSH
  • Cisco Firepower Management Center (FMC) Software
    • Simple Network Management Protocol (SNMP)
  • Cisco Next-Generation Intrusion Prevention System (NGIPS) Software
    • Simple Network Management Protocol (SNMP)
Threats:

An attacker could exploit these vulnerabilities by doing the following:

  • Remote Denial of Service attack (DoS)
  • Bypass the secure boot functionality with physical access
  • Perform an SNMP GET request using a default credential.
Best practice and Recommendations:
Last updated at 9 November, 2022

Rate the content

rate-icon
up icon