Multiple Vulnerabilities in Cisco Unified MeetingPlace

by hirantha Thu, January 28 2010 05:37

these patches released today: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml

This affects Cisco Unified MeetingPlace versions 5, 6, and 7.

Tags: ,

Cisco | Security

Cisco over-the-air-provisioning skyjacking exploit

by hirantha Thu, August 27 2009 15:44

Cisco issued a security advisory for its  1100 and 1200 Series access lightweight points. The advisory is based on work done by wifi IDS firm AirMagnet. Cisco uses an Over-The-Air-Provisioning (OTAP) protocol that uses multicast data to find a controller. During this initialization phase, a rogue controller could respond and send a bad configuration to the access point, disabling the device.

Cisco provides an advisory here: http://tools.cisco.com/security/center/viewAlert.x?alertId=18919 .

The quick summary: Establish basic configuration options like encryption keys and preferred controller lists before deploying the device.

Tags: ,

Cisco | Security

Cisco Releases IOS Bundle of Vulnerabilities

by hirantha Thu, March 26 2009 07:17
Technorati Tags: ,

Cisco has officially released a "bundle" of vulnerability notices for their IOS software.  The issues related to these notifications are varied and relate to TCP, UDP, Mobile and VPN vulnerabilities.

  • Cisco IOS cTCP DoS Vulnerability
  • Cisco IOS Multiple Features IP Sockets Vulnerability
  • Cisco IOS Mobile IP and Mobile IPv6 Vulnerabilities
  • Cisco IOS Secure Copy Privilege Escalation Vulnerability
  • Cisco IOS Session Initiation Protocol DoS Vulnerability
  • Cisco IOS Multiple Features Crafted TCP Sequence Vulnerability
  • Cisco IOS Multiple Features Crafted UDP Packet Vulnerability
  • Cisco IOS WebVPN and SSLVPN Vulnerabilities

More info : http://www.cisco.com/warp/public/707/cisco-sa-20090325-bundle.shtml

Tags:

Security | Cisco

Cisco Releases IOS Bundle of Vulnerabilities

by hirantha Thu, March 26 2009 07:14

Cisco has officially released a "bundle" of vulnerability notices for their IOS software.  The issues related to these notifications are varied and relate to TCP, UDP, Mobile and VPN vulnerabilities.

  • Cisco IOS cTCP DoS Vulnerability
  • Cisco IOS Multiple Features IP Sockets Vulnerability
  • Cisco IOS Mobile IP and Mobile IPv6 Vulnerabilities
  • Cisco IOS Secure Copy Privilege Escalation Vulnerability
  • Cisco IOS Session Initiation Protocol DoS Vulnerability
  • Cisco IOS Multiple Features Crafted TCP Sequence Vulnerability
  • Cisco IOS Multiple Features Crafted UDP Packet Vulnerability
  • Cisco IOS WebVPN and SSLVPN Vulnerabilities

More info : http://www.cisco.com/warp/public/707/cisco-sa-20090325-bundle.shtml

 

Tags: ,

Cisco | Security