Critical flaw leaves thousands of Cisco Switches vulnerable to remote hacking
by admin
Security researchers at Embedi have disclosed a critical vulnerability in Cisco IOS Software and Cisco IOS XE Software that could allow an unauthenticated, remote attacker to execute arbitrary code, take full control over the vulnerable network equipment and intercept traffic.
The stack-based buffer overflow vulnerability (CVE-2018-0171) resides due to improper validation of packet data in Smart Install Client, a plug-and-play configuration and image-management feature that helps administrators to deploy (client) network switches easily.
Read more at The Hacker News.
Recommended Posts
New Attack exploiting serious Bluetooth weakness
August 20, 2019
Critical flaw in VLC Media Player Found
July 21, 2019