Cisco Releases Security Updates for Multiple Products
Scheduled update addresses three High and thirteen Medium impact vulnerabilities
Summary
Scheduled update addresses three High and thirteen Medium impact vulnerabilities
Affected platforms
The following platforms are known to be affected:
The following platforms are also known to be affected:
- Cisco Secure Web Appliance
- Cisco Jabber for Windows
- Cisco Jabber for MacOS
- Cisco Jabber for mobile platforms
- Cisco Smart Software Manager On-Prem
- Cisco BroadWorks Hosted Thin Receptionist
- Cisco ATA 190 Series On-Premises Software (ATA 190 and ATA 191)
- Cisco ATA 190 Series Multiplatform (MPP) Software (ATA 191 and ATA 192)
- Cisco TelePresence CE Software
- Cisco RoomOS Software
Threat details
Introduction
Cisco has released nine security updates, addressing three High and thirteen Medium vulnerabilities. The High impact vulnerabilities concern bypassing certificate validation, cross-site request forgery and improper signature verification. An unauthenticated, remote attacker could exploit some of these vulnerabilities to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review the following Cisco Security Advisories and apply the necessary updates.
Remediation steps
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 7 October 2022 2:11 pm