Tag: Cisco and VMware

Cisco and VMware Address Critical Vulnerabilities
News

Cisco and VMware Address Critical Vulnerabilities

In order to address three security weaknesses in Aria Operations for Networks that could lead to information exposure and remote code execution, VMware has provided security patches. The most serious of the three flaws is a command injection flaw identified as CVE-2023-20887 (CVSS score: 9.8) that could enable remote code execution for a hostile actor with network access. Another deserialization vulnerability (CVE-2023-20888), which has a CVSS rating of 9.1 out of 10, has also been addressed by VMware. A hostile actor may be able to conduct a deserialization attack that results in remote code read more Cisco and VMware Address Critical Vulnerabilities. Stay one step ahead of cyber threats with ReconBee.com. Explore our comprehensive coverage of recent cyber attacks, cybersecur...
Cisco and VMware Release Security Updates to Patch Critical Flaws in their Products
News

Cisco and VMware Release Security Updates to Patch Critical Flaws in their Products

In order to fix serious security weaknesses in their products that might be used by hostile parties to execute arbitrary code on vulnerable computers, Cisco and VMware have released security patches. A command injection hole in Cisco Industrial Network Director (CVE-2023-20036, CVSS score: 9.9), which affects the web UI component and results from insufficient input validation while uploading a Device Pack, is the most serious vulnerability. According to a Cisco alert published on April 19, 2023, "A successful exploit could allow the attacker to execute arbitrary commands as NT AUTHORITY SYSTEM on the underlying operating read more Cisco and VMware Release Security Updates to Patch Critical Flaws in their Products. With ReconBee.com Stay ahead of the latest threats with in-depth c...