Security News > 2020 > October > Cisco Patches 17 High-Severity Vulnerabilities in Security Appliances

Cisco Patches 17 High-Severity Vulnerabilities in Security Appliances
2020-10-22 12:50

Cisco on Wednesday announced the release of patches for 17 high-severity vulnerabilities in its security appliances as part of its Security Advisory Bundled Publication for October 2020.

The vulnerabilities have been found to impact Adaptive Security Appliance, Firepower Threat Defense, and Firepower Management Center.

Most of the vulnerabilities that can be exploited remotely without authentication allow an attacker to cause a denial-of-service condition.

A majority of these security holes were found internally and Cisco says it has found no evidence that any of them has been exploited in attacks.

The U.S. National Security Agency included the flaw, tracked as CVE-2020-3118, in a list of vulnerabilities exploited by Chinese state-sponsored hackers.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/ucit_qRbAAM/cisco-patches-17-high-severity-vulnerabilities-security-appliances

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2020-02-05 CVE-2020-3118 Out-of-bounds Write vulnerability in Cisco IOS XR
A vulnerability in the Cisco Discovery Protocol implementation for Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to execute arbitrary code or cause a reload on an affected device.
low complexity
cisco CWE-787
8.8

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Cisco 2046 21 1773 1669 288 3751