Thursday, 09 February 2012
 
spacer.png, 0 kB
spacer.png, 0 kB
spacer.png, 0 kB
Cisco Advisories and Notices

The following articles belong to either of the two categories:

  • Security Advisories: For security issues that directly impact Cisco products and action is necessary to repair the Cisco product.

  • Security Notices: For issues that require a response to information posted to a public forum, or recommendations to mitigate general problems affecting network stability.


Multiple Vulnerabilities in the Cisco ACE Application Control Engine...
Tuesday, 10 March 2009
The Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine Cisco ACE Module and Cisco ACE 4710 Application Control Engine contain multiple vulnerabilities that, if exploited, can result in any of the following impacts:
Read more...
 
Cisco 7600 Series Router Session Border Controller Denial of Service...
Thursday, 05 March 2009
A denial of service (DoS) vulnerability exists in the Cisco Session Border Controller (SBC) for the Cisco 7600 series routers. Cisco has released free software updates that address this vulnerability. Workarounds that mitigate this vulnerability are available.
Read more...
 
Cisco Unified MeetingPlace Web Conferencing Authentication Bypass...
Thursday, 26 February 2009
Cisco Unified MeetingPlace Web Conferencing servers may contain an authentication bypass vulnerability that could allow an unauthenticated user to gain administrative access to the MeetingPlace application. Cisco has released free software updates that address this vulnerability.
Read more...
 
Cisco ACE Application Control Engine Device Manager and Application...
Thursday, 26 February 2009
Multiple vulnerabilities exist in the Cisco Application Networking Manager (ANM) and Cisco Application Control Engine (ACE) Device Manager applications. These vulnerabilities are independent of each other. Successful exploitation of these vulnerabilities may result in unauthorized system or host operating system access.
Read more...
 
Cisco Security Manager Vulnerability
Thursday, 22 January 2009
Cisco Security Manager contains a vulnerability when it is used with Cisco IPS Event Viewer (IEV) that results in open TCP ports on both the Cisco Security Manager server and IEV client. An unauthenticated, remote attacker could leverage this vulnerability to access the MySQL databases or IEV server.
Read more...
 
Cisco Unified Communications Manager CAPF Denial of Service Vulnerability
Thursday, 22 January 2009
Cisco Unified Communications Manager, formerly Cisco CallManager, contains a denial of service (DoS) vulnerability in the Certificate Authority Proxy Function (CAPF) service. Exploitation of this vulnerability could cause an interruption in voice services. The CAPF service is disabled by default.
Read more...
 
Cisco ONS Platform Crafted Packet Vulnerability
Thursday, 15 January 2009
The Cisco ONS 15300 series Edge Optical Transport Platform, the Cisco ONS 15454 Optical Transport Platform, the Cisco ONS 15454 SDH Multiservice Platform, and the Cisco ONS 15600 Multiservice Switching Platform contains a vulnerability when processing TCP traffic streams that may result in a reload of the device control card.
Read more...
 
IronPort Encryption Appliance / PostX and PXE Encryption Vulnerabilities
Thursday, 15 January 2009
IronPort PXE Encryption is an e-mail encryption solution that is designed to secure e-mail communications without the need for a Public Key Infrastructure (PKI) or special agents on receiving systems.
Read more...
 
Cisco Global Site Selector Appliances DNS Vulnerability
Thursday, 08 January 2009
The Cisco Application Control Engine Global Site Selector (GSS) contains a vulnerability when processing specific Domain Name System (DNS) requests that may lead to a crash of the DNS service on the GSS.
Read more...
 
Multiple Vulnerabilities in Cisco PIX and Cisco ASA.
Wednesday, 22 October 2008
Multiple vulnerabilities exist in the Cisco ASA 5500 Series Adaptive Security Appliances and Cisco PIX Security Appliances.
Read more...
 
Authentication Bypass in Cisco Unity
Thursday, 09 October 2008
A vulnerability exists in Cisco Unity that could allow an unauthenticated user to view or modify some of the configuration parameters of the Cisco Unity server. Cisco has released free software updates that address this vulnerability. A workaround that mitigates this vulnerability is available.
Read more...
 
Multiple Cisco Products Vulnerable to DNS Cache Poisoning Attacks
Wednesday, 10 September 2008
Read more...
 
Remote Access VPN and SIP Vulnerabilities in Cisco PIX and Cisco ASA
Thursday, 04 September 2008
Multiple vulnerabilities exist in the Cisco ASA 5500 Series Adaptive Security Appliances and Cisco PIX Security Appliances that may result in a reload of the device or disclosure of confidential information. This security advisory outlines details of the following vulnerabilities:
Read more...
 
Vulnerability in Cisco WebEx Meeting Manager ActiveX Control
Tuesday, 19 August 2008
An ActiveX control (atucfobj.dll) that is used by the Cisco WebEx Meeting Manager contains a buffer overflow vulnerability that may result in a denial of service or remote code execution. The WebEx Meeting Manager is a client-side program that is provided by the Cisco WebEx meeting service. The Cisco WebEx meeting service automatically downloads, installs, and configures Meeting Manager the first time a user begins or joins a meeting.
Read more...
 
Cisco IOS User Datagram Protocol Delivery Issue For IPv4/IPv6 Dual-stack...
Thursday, 03 July 2008
A device running Cisco IOS software that has Internet Protocol version 6 (IPv6) enabled may be subject to a denial of service (DoS) attack. For the device to be affected by this vulnerability the device also has to have certain Internet Protocol version 4 (IPv4) User Datagram Protocol (UDP) services enabled. To exploit this vulnerability an offending IPv6 packet must be targeted to the device. Packets that are routed throughout the router can not trigger this vulnerability. Successful exploitation will prevent the interface from receiving any additional traffic. The only exception is Resource Reservation Protocol (RSVP) service, which if exploited, will cause the device to crash. Only the interface on which the vulnerability was exploited will be affected.
Read more...
 
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>

Results 16 - 30 of 180
spacer.png, 0 kB
     

© 2012 Intellect Information Technology Pty Ltd, Melbourne, Australia.

This page was loaded in 0.064 seconds.