Skip to content

Home Publications Cisco Security Advisories
Cisco Security Advisories
Tuesday, 13 March 2018 12:00

Cisco has released three(3) Critical, one(1) High, and nineteen(19) Medium security advisories to address vulnerabilities in multiple Cisco products.

A Critical vulnerability (cisco-sa-20180221-ucdm) in Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to bypass security protections, gain elevated privileges, and execute arbitrary code.

A Critical vulnerability (cisco-sa-20180307-cpcp) in Cisco Prime Collaboration Provisioning (PCP) Software could allow an unauthenticated, local attacker to log in to the underlying Linux operating system.

A Critical vulnerability (cisco-sa-20180307-acs2) in Java deserialization used by Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device.

A High vulnerability (cisco-sa-20180307-wsa) in the FTP server of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to log in to the FTP server of the device without a valid password. The attacker does need to have a valid username.

 
[YOUR IP : 54.162.165.158: 45404] ...   [YOUR BROWSER: CCBot/2.0 (http://commoncrawl.org/faq/)] ...