Cisco

Articles and blog posts that relate to Cisco Systems which is a multinational technology company based in San Jose, California. Founded in 1984 by Leonard Bosack and Sandy Lerner, Cisco is a global leader in networking and cybersecurity solutions. The company designs, manufactures, and sells a wide range of networking hardware, software, and telecommunications equipment.

Cisco’s products and services are essential for building and maintaining internet infrastructure, including routers, switches, firewalls, and wireless access points. Cisco also offers solutions for network security, cloud computing, data centers, and collaboration tools such as Webex for video conferencing.

NewsSecurity Vulnerabilities

Cisco Identity Services Engine on Cloud Platforms Static Credential Vulnerability (CVE-2025-20286)

– A critical vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to access sensitive data, execute limited administrative operations, modify system configurations, or disrupt services within the impacted systems.

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Denial of Service Vulnerabilities

– Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition to the AnyConnect VPN service on an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series Teleworker Gateway AnyConnect VPN Session Takeover and Denial of Service Vulnerability (CVE-2024-20509)

– A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to hijack an AnyConnect VPN session or cause a denial of service condition for individual users of the AnyConnect VPN service on affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Unified Intelligence Center Privilege Escalation Vulnerabilities (CVE-2025-20113 & CVE-2025-20114)

Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to perform privilege escalation attacks on an affected system.

Read More
NewsSecurity Vulnerabilities

Cisco Identity Services Engine RADIUS Denial of Service Vulnerability (CVE-2025-20152)

A vulnerability in the RADIUS message processing feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Catalyst SD-WAN Manager Arbitrary File Overwrite Vulnerability (CVE-2025-20213)

A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco IOS XE Wireless Controller Software Arbitrary File Upload Vulnerability (CVE-2025-20188)

CVE number = CVE-2025-20188 A vulnerability in the Out-of-Band Access Point (AP) Image Download feature of Cisco IOS XE Software

Read More
NewsSecurity Vulnerabilities

Cisco IOS XE SNMP OID Handling Out-Of-Bounds Read Denial-of-Service Vulnerability (CVE-2025-20172)

This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Cisco IOS XE.

Read More
NewsSecurity Vulnerabilities

Cisco IOS XE SNMP GET-NEXT ciscoFlashFileSize Unexpected Sign Extension Denial-of-Service Vulnerability (CVE-2025-20169)

This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Cisco IOS XE.

Read More
NewsSecurity Vulnerabilities

Multiple Cisco Products Unauthenticated Remote Code Execution in Erlang/OTP SSH Server (CVE-2025-32433)

On April 16th 2025, a critical vulnerability in the Erlang/OTP SSH server was disclosed. This vulnerability could allow an unauthenticated, remote attacker to perform remote code execution (RCE) on an affected device.

Read More