Browsing tag

Cisco

Critical vulnerabilities impacting Cisco Elastic Services Controller

Web application security testing experts reported a critical vulnerability in Cisco Elastic Services Controller (ESC), which could allow an unauthenticated remote hacker to take full control of the compromised system using just a specially designed request. ESC is a virtual network function manager employed by hundreds of companies to automate the implementation and monitoring of […]

Critical vulnerability found in Cisco Nexus 9000 switch, update now

Cybersecurity specialists report that the Cisco Nexus 9000 Series switch presents a critical vulnerability that, if exploited, would allow an attacker to remotely connect to a compromised device using Secure Shell (SSH) and control it with root user privileges. The company revealed the existence of this vulnerability in recent days, giving it a severity score […]

Top VPNs found improperly securing cookies & tokens

VPN software programs of Palo Alto, Cisco, Pulse, and F5 don’t Store Session Cookies Securely- DHS. A warning has been issued by the Department of Homeland Security (DHS) regarding the unreliable nature of Virtual Private Network (VPN) programmes from several well-known VPN service providers including Cisco, Palo Alto Networks, Pulse, and F5. The problem described […]

Pulse Secure, Cisco, F5 Networks and Palo Alto Networks business VPN services present security vulnerabilities, says Homeland Security

According to cyber forensics course specialists from the International Institute of Cyber Security (IICS) the services of virtual private networks (VPN) provided by some companies are vulnerable to security flaws that could allow an attacker to enter remotely into a company’s internal network. The cybersecurity area of the Department of Homeland Security issued an alert […]

Remote code execution vulnerability in Cisco WebEx browser extensions

Ethical hacking training specialists from the International Institute of Cyber Security have reported the discovery of a new vulnerability in the Cisco WebEx browser extensions that could allow remote code execution; according to the reports, the vulnerability has already been exploited in the wild. Just a few days ago Cisco announced the launching of a […]

Cisco asks switch Nexus users to disable some features; the company alleges security reasons

The company will launch a new firmware for Nexus in which the POAP function is completely disabled For security reasons, the Cisco company has asked the users of its Nexus switch to disable the PowerOn Auto Provision (POAP) function, report network security and ethical hacking experts from the International Institute of Cyber Security. This feature is enabled by default […]

Cyberattack campaign against various Cisco router models

The attacks began two days after the company corrected a critical vulnerability A critical vulnerability in various router models was recently solved by Cisco. However, according to network security and ethical hacking specialists from the International Institute of Cyber Security, only two days after the corrections were implemented, hacker groups began conducting scans and launching […]

A new Cisco Webex privilege escalation vulnerability

This vulnerability can be exploited only by local attackers Malicious hackers could exploit a privilege escalation vulnerability in Cisco Webex Meetings for Windows operating systems to execute arbitrary commands using administrator privileges, report network security specialists from the International Institute of Cyber Security. This vulnerability affects all versions of the Cisco Webex Meetings desktop application […]

Hackers Exploiting More than 9000 Cisco RV320/RV325 Routers After POC published in GitHub

Cybercriminals now actively exploiting 9,852 Cisco RV320/RV325 routers that are vulnerable to critical remote code execution vulnerabilities CVE-2019-1653, CVE-2019-1652. A vulnerability in the Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an unauthenticated, remote attacker to retrieve sensitive information from CVE-2019-1653, and a remote attacker with administrative privileges on an affected […]

Critical vulnerabilities in Cisco routers affect thousands of companies in the entire world

The firm has already released update patches for several SMEs products The Cisco technology firm recently launched update patches to address two critical vulnerabilities present in RV320 and RV325 routers, products widely used in small businesses. According to network security specialists, the first of these failures (CVE-2019-1653) could be exploited by remote attackers to access […]

Critical vulnerability in Cisco devices exposes networks of thousands of SMEs

A default configuration grants full admin-level access to unauthenticated remote users A critical uncorrected vulnerability in the Cisco product called Small Business Switch, widely used by SMEs, leaves systems vulnerable to remote attacks by unauthenticated users. According to experts in network security and ethical hacking from the International Institute of Cyber Security, an attacker could […]

Windows 10 version 1809 is incompatible with Morphisec anti-malware

Another day, another Windows 10 update issue – This time it includes security software. Another day, another reason for Windows 10 to make headlines for all the wrong reasons. It is a fact that Windows 10 is currently used by over 400 million users globally but lately, its updates have been causing users a great […]

Cisco launches patches for vulnerabilities in WEBEX Meetings app

Users are encouraged to install updates as soon as possible Cisco has launched a security update set for Webex Meetings that resolves a vulnerability that, if exploited, could grant the attacker an escalation of privileges, as reported by experts in digital forensics and cybersecurity from the International Institute of Cyber Security. The vulnerability, tracked as CVE-2018-15442, […]

LIVE555 media streaming library hit by remote code execution flaw

This article has been updated with a statement from Live Networks, Inc explaining that the flaw only affected their implementation of RTSP server, which VLC and MPlayer do not use. The IT security researcher at Cisco Talos Intelligence Group has discovered a critical remote code execution vulnerability CVE-2018-4013 in the LIVE555 media streaming library. Maintained by the […]

FragmentSmack vulnerability in Linux kernel affects 88 Cisco products

The company’s product list with this flaw keeps growing Cisco has confirmed that many of its products that depend on the Linux kernel are vulnerable to a potentially dangerous denial-of-service (DoS) flaw. The vulnerability, called FragmentSmack, was revealed last August by experts in ethical hacking, mentioning that it affects the stack of IP networks in […]

Fancy Bear’s VPNfilter malware is back with 7 new modules

Cisco’s Talos researchers have identified that Russia’s VPNfilter is way more dangerous than it is believed to be. The malware, which prompted the FBI to urge people to reboot their internet routers, contains seven additional third-stage modules that are infecting countless global networking devices since 2016. The infected devices are mainly located in Ukraine as […]

Vulnerability affects Cisco Video Surveillance Manager

The company has patched a critical vulnerability in Cisco Video Surveillance Manager that could be exploited to gain root access Reports of specialists in ethical hacking from the International Institute of Cyber Security say that Cisco has solved a critical vulnerability in the software of Cisco Video Surveillance Manager (VSM) that runs on some Connected Safety and […]

A Cisco software vulnerability could allow unauthorized access to sensitive information

The company is already working on a security update A recently discovered vulnerability in the Cisco Data Center Network Manager software could allow a remote attacker to gain access to sensitive information, as reported by cyber security organization experts. The Data Center Network Manager software is used to manage switches and routers connected through LAN and SAN […]