Cisco

Articles and blog posts that relate to Cisco Systems which is a multinational technology company based in San Jose, California. Founded in 1984 by Leonard Bosack and Sandy Lerner, Cisco is a global leader in networking and cybersecurity solutions. The company designs, manufactures, and sells a wide range of networking hardware, software, and telecommunications equipment.

Cisco’s products and services are essential for building and maintaining internet infrastructure, including routers, switches, firewalls, and wireless access points. Cisco also offers solutions for network security, cloud computing, data centers, and collaboration tools such as Webex for video conferencing.

NewsSecurity Vulnerabilities

Multiple Cisco Products Unauthenticated Remote Code Execution in Erlang/OTP SSH Server (CVE-2025-32433)

On April 16th 2025, a critical vulnerability in the Erlang/OTP SSH server was disclosed. This vulnerability could allow an unauthenticated, remote attacker to perform remote code execution (RCE) on an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Webex App Client-Side Remote Code Execution Vulnerability (CVE-2025-20236)

A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade a user to download arbitrary files, which could allow the attacker to execute arbitrary commands on the host of the targeted user.

Read More
NewsSecurity Vulnerabilities

Cisco Nexus Dashboard LDAP Username Enumeration Vulnerability (CVE-2025-20150)

CVE-2025-20150 – A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts.

Read More
NewsSecurity Vulnerabilities

Cisco Enterprise Chat and Email Denial of Service Vulnerability (CVE-2025-20139)

A vulnerability in chat messaging features of Cisco Enterprise Chat and Email (ECE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.

Read More
NewsSecurity Vulnerabilities

Cisco Meraki MX and Z Series AnyConnect VPN Denial of Service Vulnerability (CVE-2025-20212)

A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series devices could allow an authenticated, remote attacker to cause a denial of service (DoS) condition in the Cisco AnyConnect service on an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco Smart Licensing Utility Vulnerabilities (CVE-2024-20439 and CVE-2024-20440)

CVE-2024-20439 and CVE-2024-20440 – Multiple vulnerabilities in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to collect sensitive information or administer Cisco Smart Licensing Utility services on a system while the software is running.

Read More
NewsSecurity Vulnerabilities

Cisco IOS XR Software Release 7.9.2 Denial of Service Vulnerability (CVE-2025-20141)

A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS XR Software Release 7.9.2 could allow an unauthenticated, adjacent attacker to cause control plane traffic to stop working on multiple Cisco IOS XR platforms.

Read More
NewsSecurity Vulnerabilities

Cisco Small Business Routers Vulnerabilities (CVE-2023-20025 and CVE-2023-20026 and CVE-2023-20118)

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow a remote attacker to bypass authentication or execute arbitrary commands on the underlying operating system of an affected device.

Read More
NewsSecurity Vulnerabilities

Cisco TelePresence Management Suite Cross-Site Scripting Vulnerability (CVE-2025-20208)

CVE-2025-20208 is a vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow a low-privileged, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface.

Read More
NewsSecurity Vulnerabilities

Cisco Secure Client for Windows with Secure Firewall Posture Engine DLL Hijacking Vulnerability (CVE-2025-20206)

A vulnerability in the interprocess communication (IPC) channel of Cisco Secure Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack on an affected device if the Secure Firewall Posture Engine, formerly HostScan, is installed on Cisco Secure Client.

Read More