Security News > 2021 > February > Critical Cisco Flaws Open VPN Routers Up to RCE Attacks

Critical Cisco Flaws Open VPN Routers Up to RCE Attacks
2021-02-04 15:59

Cisco is rolling out fixes for critical holes in its lineup of small-business VPN routers.

The flaws exist in the web-based management interface of Cisco's small-business lineup of VPN routers.

On Wednesday, Cisco also warned of two high-severity flaws across this same set of small-business VPN routers.

These flaws are also fixed by firmware Release 1.0.01.02; The networking giant said that it's not aware of any exploits in the wild of the critical flaws for any of these flaws.

Cisco on Wednesday pushed out a flurry of patches addressing high-severity vulnerabilities beyond its VPN small-business routers.

Finally, Cisco patched various high-severity flaws affecting its IOS XR software, a train of Cisco Systems' widely deployed Internetworking Operating System.


News URL

https://threatpost.com/cisco-flaws-vpn-routers-rce/163662/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Cisco 2046 21 1773 1669 288 3751