Cisco Products Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Security software and application - Security Software & Appliance
Multiple vulnerabilities were identified in Cisco Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, remote code execution, sensitive information disclosure, data manipulation, cross-site scripting and security restriction bypass on the targeted system.
Impact
- Remote Code Execution
- Cross-Site Scripting
- Security Restriction Bypass
- Information Disclosure
- Denial of Service
- Data Manipulation
System / Technologies affected
- Cisco BroadWorks Application Delivery Platform Device Management Software
- Cisco BroadWorks Application Server
- Cisco BroadWorks Xtended Services Platform
- Cisco CX Cloud Agent
- Cisco IND
- Cisco NSO
- IP Phone 7800 Series
- IP Phone 8800 Series
- Packaged Contact Center Enterprise (CCE)
- RoomOS Software in cloud-aware on-premises operation, which is cloud based
- RV160 VPN Routers
- RV160W Wireless-AC VPN Routers
- RV260 VPN Routers
- RV260P VPN Routers with PoE
- RV260W Wireless-AC VPN Routers
- RV340 Dual WAN Gigabit VPN Routers
- RV340W Dual WAN Gigabit Wireless-AC VPN Routers
- RV345 Dual WAN Gigabit VPN Routers
- RV345P Dual WAN Gigabit POE VPN Routers
- TelePresence CE Software
- Unified CCE
- Unified Contact Center Express (CCX)
- Webex Room Phone
- Webex Share
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuis-xss-Omm8jyBX
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ip-phone-auth-bypass-pSqxZRPR
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cxagent-gOq9QjqZ
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ind-fZyVjJtG
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-xss-EzqDXqG4
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-dkjGFgRK
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-lldp-memlk-McOecPT
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-cmd-exe-n47kJQLE
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-rv-rcedos-7HjP74jD
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-dos-HpkeYzp
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-path-trvsl-zjBeMkZg
Vulnerability Identifier
- CVE-2023-20002
- CVE-2023-20007
- CVE-2023-20008
- CVE-2023-20018
- CVE-2023-20019
- CVE-2023-20020
- CVE-2023-20037
- CVE-2023-20038
- CVE-2023-20040
- CVE-2023-20043
- CVE-2023-20044
- CVE-2023-20045
- CVE-2023-20047
- CVE-2023-20058
Source
Related Link
- https://www.auscert.org.au/bulletins/ESB-2023.0180
- https://www.auscert.org.au/bulletins/ESB-2023.0179
- https://www.auscert.org.au/bulletins/ESB-2023.0178
- https://www.auscert.org.au/bulletins/ESB-2023.0177
- https://www.auscert.org.au/bulletins/ESB-2023.0176
- https://www.auscert.org.au/bulletins/ESB-2023.0175
- https://www.auscert.org.au/bulletins/ESB-2023.0174
- https://www.auscert.org.au/bulletins/ESB-2023.0173
- https://www.auscert.org.au/bulletins/ESB-2023.0172
- https://www.auscert.org.au/bulletins/ESB-2023.0170
- https://www.auscert.org.au/bulletins/ESB-2023.0169
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuis-xss-Omm8jyBX
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ip-phone-auth-bypass-pSqxZRPR
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cxagent-gOq9QjqZ
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ind-fZyVjJtG
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-xss-EzqDXqG4
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-dkjGFgRK
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-lldp-memlk-McOecPT
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-cmd-exe-n47kJQLE
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-rv-rcedos-7HjP74jD
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bw-dos-HpkeYzp
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-path-trvsl-zjBeMkZg
Related Tags
Share with