Cisco fixes privilege escalation bug in Cisco Secure Client

Cisco addressed a high-severity flaw in Cisco Secure Client that can allow attackers to escalate privileges to the SYSTEM account. Cisco has fixed a high-severity vulnerability, tracked as CVE-2023-20178 (CVSS Score 7.8), found in Cisco Secure Client (formerly AnyConnect Secure Mobility Client) that can be exploited by low-privileged, authenticated, local attacker to escalate privileges to […]

The post Cisco fixes privilege escalation bug in Cisco Secure Client appeared first on Security Affairs.

June 8, 2023
Read More >>

Cisco Warns of Multiple Flaws in Small Business Series Switches

Cisco is warning that nine significant vulnerabilities in its Small Business Series Switches could enable unauthenticated remote attackers to cause a denial-of-service condition or execute arbitrary code with root privileges on affected devices. The vulnerabilities are caused by improper validation of requests sent to the switches’ web interfaces, the company said. While the Cisco Product […]

The post Cisco Warns of Multiple Flaws in Small Business Series Switches appeared first on eSecurityPlanet.

May 19, 2023
Read More >>

Critical fixed critical flaws in Cisco Small Business Switches

Cisco fixed nine flaws in its Small Business Series Switches that could be exploited to execute arbitrary code or cause a DoS condition. Cisco has released security updates to address nine security vulnerabilities in the web-based user interface of certain Small Business Series Switches that could be exploited by an unauthenticated, remote attacker to execute […]

The post Critical fixed critical flaws in Cisco Small Business Switches appeared first on Security Affairs.

May 18, 2023
Read More >>