Cisco Releases Security Updates for Multiple Products
Affected platforms
The following platforms are known to be affected:
The following platforms are also known to be affected:
Cisco Connected Mobile Experiences Versions: 10.6.0, 10.6.1, and 10.6.2
Cisco RV110W, RV130, RV130W, and RV215W Small Business Routers
Threat details
Introduction
Cisco has released security updates to address critical vulnerabilities in several Cisco products. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review the below Cisco security advisories and apply any relevant updates. For updates addressing lower severity vulnerabilities please see the Cisco Security Advisories page.
Remediation steps
| Type | Step |
|---|---|
| Patch |
Cisco AnyConnect Secure Mobility Client for Windows DLL Injection Vulnerability | https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-anyconnect-dll-injec-pQnryXLf |
| Patch |
Cisco Connected Mobile Experiences Privilege Escalation Vulnerability | cisco-sa-cmxpe-75Asy9k https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cmxpe-75Asy9k |
| Patch |
Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Command Injection Vulnerabilities | cisco-sa-rv-command-inject-LBdQ2KRN https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-command-inject-LBdQ2KRN |
| Patch |
Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution and Denial of Service Vulnerabilities | https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-overflow-WUnUgv4U |
Last edited: 21 January 2021 10:54 am