2024年4月25日星期四

Cisco Products Multiple Vulnerabilities

Release Date: 25 Apr 2024

RISK: High Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

Multiple vulnerabilities were identified in Cisco Products. A remote attacker could exploit some of these vulnerabilities to trigger remote code execution and denial of service condition on the targeted system.

 

Notes:

CVE-2024-20353 and CVE-2024-20359 are being exploited in the wild. CVE-2024-20353 required users enabling SSL listen sockets on any TCP port to be exploited. CVE-2024-20359 required a user who have at least resource administrator role privilege to perform critical actions. Hence, the risk level is rated as High Risk.


沒有留言:

發佈留言

ISC BIND 多個漏洞

ISC BIND 多個漏洞 發佈日期 : 2026 年 09 月 18 日 273 觀看次數 風險 : 中度風險 Medium Risk 類型 : 伺服器 - 網絡管理 於 ISC BIND 發現多個漏洞,遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷...