Cisco Security Advisories · January 2012 — Cisco Security Advisories
3 advisories 3 CVEs 1 EXPLOITED

PSIRT bulletins (cisco-sa-*) and cross-source CVEs naming Cisco for 2012-01. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

cisco-sa-20120126-ironport

Cisco PSIRTExploitedVulnCheck KEV listed2012-01-26

Cisco IronPort Appliances Telnet Remote Code Execution Vulnerability

CVEs:CVE-2011-4862

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-114628 affected Cisco
CVRFPID-189789 affected Cisco
CVRFPID-189791 affected Cisco
CVRFPID-96773 affected Cisco
Upstream advisory

cisco-sa-20120118-dmm

Cisco PSIRTEPSS <= 49%2012-01-18

Cisco Digital Media Manager Privilege Escalation Vulnerability

CVEs:CVE-2012-0329

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-43 affected Cisco
CVRFPID-95918 affected Cisco
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.