Cisco Security Advisories · January 2013 — Cisco Security Advisories
5 advisories 8 CVEs 1 EXPLOITED

PSIRT bulletins (cisco-sa-*) and cross-source CVEs naming Cisco for 2013-01. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

Advisories

cisco-sa-20130129-upnp

Cisco PSIRTExploited2013-01-29

Portable SDK for UPnP Devices Contains Buffer Overflow Vulnerabilities

CVEs:CVE-2012-5958

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-109691 affected Cisco
CVRFPID-110614 affected Cisco
CVRFPID-183637 affected Cisco
CVRFPID-98895 affected Cisco
CVRFPID-98910 affected Cisco
Upstream advisory

cisco-sa-20130123-wlc

Cisco PSIRT2013-01-23

Multiple Vulnerabilities in Cisco Wireless LAN Controllers

CVEs:CVE-2013-1102CVE-2013-1103CVE-2013-1104CVE-2013-1105

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-109058 affected Cisco
CVRFPID-109059 affected Cisco
CVRFPID-109060 affected Cisco
CVRFPID-109061 affected Cisco
CVRFPID-114900 affected Cisco
CVRFPID-114902 affected Cisco
CVRFPID-114903 affected Cisco
CVRFPID-114904 affected Cisco
CVRFPID-114905 affected Cisco
CVRFPID-188676 affected Cisco
Upstream advisory

cisco-sa-20130109-uipphone

Cisco PSIRT2013-01-09

Cisco Unified IP Phone Local Kernel System Call Input Validation Vulnerability

CVEs:CVE-2012-5445

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-109904 affected Cisco
CVRFPID-109994 affected Cisco
CVRFPID-109995 affected Cisco
CVRFPID-188519 affected Cisco
CVRFPID-73426 affected Cisco
CVRFPID-73458 affected Cisco
CVRFPID-73464 affected Cisco
CVRFPID-73470 affected Cisco
CVRFPID-73476 affected Cisco
CVRFPID-7655 affected Cisco
CVRFPID-7656 affected Cisco
CVRFPID-7657 affected Cisco
CVRFPID-7658 affected Cisco
CVRFPID-7659 affected Cisco
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.