Cisco Security Advisories

Syndicate content News@Cisco
Cisco Security Advisories (the 40 most recent advisories)
Updated: 54 min 9 sec ago

CDS Internet Streamer: Web Server Directory Traversal Vulnerability

Thu, 2010-07-29 05:00
The Cisco Internet Streamer application, part of the Cisco Content Delivery System, contains a directory traversal vulnerability on its web server component that allows for arbitrary file access. By exploiting this vulnerability, an attacker may be able to read arbitrary files on the device, outside of the web server document directory, by using a specially crafted URL.
Categories: Security Alerts

Transport Layer Security Renegotiation Vulnerability

Thu, 2010-07-22 09:00
An industry-wide vulnerability exists in the Transport Layer Security (TLS) protocol that could impact any Cisco product that uses any version of TLS and SSL. The vulnerability exists in how the protocol handles session renegotiation and exposes users to a potential man-in-the-middle attack.
Categories: Security Alerts

Cisco Secure Desktop ActiveX Control Code Execution Vulnerability

Tue, 2010-07-13 05:00
Updated workarounds.
Categories: Security Alerts

Multiple Vulnerabilities in Cisco Network Building Mediator

Mon, 2010-06-07 07:00
Multiple vulnerabilities exist in the Cisco Network Building Mediator (NBM) products. These vulnerabilities also affect the legacy Richards-Zeta Mediator products.
Categories: Security Alerts

Cisco Small Business Video Surveillance Cameras and Cisco 4-Port Gigabit Security Routers Authentication Bypass Vulnerability

Mon, 2010-05-17 06:30
Cisco Small Business Video Surveillance Cameras and Cisco RVS4000 4-port Gigabit Security Routers contain a vulnerability that could allow an authenticated user to view passwords for other users, regardless of the authenticated user's level of authorization.
Categories: Security Alerts