0x

guest@0xbase ~$ read-only mode. Posting requires EU location.

Cisco Patches Vulnerabilities in Catalyst SD-WAN Controller and Manager (advisories.ncsc.nl)

· 73d ago · Report · Spotlight this ·
0xBASE INTEL BRIEF
  • Four vulnerabilities: XXE injection, privilege escalation, authentication bypass
  • Authentication bypass in peering mechanism enables privilege escalation
  • Cisco confirms limited exploitation; NCSC expects increased attacks

"Cisco has fixed four vulnerabilities in its Catalyst SD-WAN Controller and Manager products, including XXE injection, privilege escalation, and an authentication bypass. The authentication bypass flaw in the peering mechanism allows unauthenticated attackers to gain elevated privileges and manipulate network configurations. Cisco confirms limited targeted exploitation; the Dutch NCSC expects an increase in scanning and attack traffic."

Discussion Matrix

0 segments

no comments yet.