Zurück zur Liste

Cisco Unity Connection Remote Code Execution and Server-Side Request Forgery Vulnerabilities — CISCO-SA-UNITY-RCE-SSRF-HENHUASY

Cisco · Cisco · CISCO-SA-UNITY-RCE-SSRF-HENHUASY

ID
CISCO-SA-UNITY-RCE-SSRF-HENHUASY
Datum
Activity
Quelle
Cisco
Vendor
Cisco
Risiko
high

Zusammenfassung

Multiple vulnerabilities in Cisco Unity Connection could allow a remote attacker to execute arbitrary code on or conduct server-side request forgery (SSRF) attacks through an affected device. For more information about these vulnerabilities, see the Details section of this advisory.  Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these…

Produkt

Cisco Unity Connection Remote Code Execution and Server-Side Request Forgery

Was tun?

Allgemeine, vorsichtige Schritte (bitte prüfe die offizielle Quelle für Details):

  • Priorisiere sofort Patches oder Mitigations (hohes akutes Risiko).
  • Identifiziere betroffene Produktversionen und prüfe, ob du betroffen bist.
  • Spiele Hersteller-Updates/Patches ein oder setze empfohlene Mitigations um.
  • Lies das offizielle Advisory für betroffene Versionen und konkrete Schritte.

Offizielles Advisory

Mehr dazu