Security News > 2020 > January > PoC Exploits Released for Cisco DCNM Vulnerabilities

A researcher who discovered many vulnerabilities in Cisco's Data Center Network Manager product has made public some proof-of-concept exploits and technical details.
In early January, Cisco informed customers that it had released updates for DCNM to address several critical and high-severity vulnerabilities.
Nearly two weeks after Cisco released patches, the researcher published a blog post describing his findings and also provided PoC exploits for the authentication bypass flaws.
While Cisco only assigned 11 CVE identifiers to the vulnerabilities found by Seeley, the researcher says he has identified well over 100 exploitable bugs.
Cisco has updated its advisories to reflect the public availability of PoC exploits.
News URL
Related news
- Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing Utility (source)
- PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices (source)
- Week in review: Botnet hits M365 accounts, PoC for Ivanti Endpoint Manager vulnerabilities released (source)
- CISA tags Windows, Cisco vulnerabilities as actively exploited (source)
- Hackers exploit old FortiGate vulnerabilities, use symlink trick to retain limited access to patched devices (source)