Thursday, February 27, 2025
HomeSecurity UpdateCisco Released Critical Security Updates for Vulnerabilities that Affected Cisco Products

Cisco Released Critical Security Updates for Vulnerabilities that Affected Cisco Products

Published on

SIEM as a Service

Follow Us on Google News

Cisco Released critical Security Updates for many of its product where they addressed 27 new vulnerabilities which categorized under Critical, High and Medium.

Some of the critical Vulnerabilities allows a remote attacker could exploit one of these vulnerabilities to take control of an affected system.

Security updates released with fixes of 4 Vulnerabilities under “Critical” category, 9 vulnerabilities fixed under “High” Impact Catagory and the remaining 14 vulnerabilities are addressed under “Medium” severity.

In this case, 2 Cisco products(Cisco Finesse, Cisco Unified Contact Center Express) contains multiple vulnerabilities that fixed under “Medium” severity.

Cisco does not provide vulnerability details that could enable someone to craft an exploit and the fixed vulnerabilities are affected directly by the Cisco products.

 Cisco Released Critical Security updates

Critical Severity Vulnerabilities

 

High Severity Vulnerabilities

High

CVE-2018-0379

2018 Jul 181.0
High

CVE-2018-0379

2018 Jul 181.0
High

CVE-2018-0379

2018 Jul 181.0
High

CVE-2018-0349

2018 Jul 181.0
High

CVE-2018-0349

2018 Jul 181.0
High

CVE-2018-0349

2018 Jul 181.0
High

CVE-2018-0346

2018 Jul 181.0
High

CVE-2018-0346

2018 Jul 181.0
High

CVE-2018-0346

2018 Jul 181.0
High

CVE-2018-0345

2018 Jul 181.0
High

CVE-2018-0345

2018 Jul 181.0
High

CVE-2018-0345

2018 Jul 181.0
High

CVE-2018-0351

2018 Jul 181.0
High

CVE-2018-0351

2018 Jul 181.0
High

CVE-2018-0351

2018 Jul 181.0
High

CVE-2018-0348

2018 Jul 181.0
High

CVE-2018-0348

2018 Jul 181.0
High

CVE-2018-0348

2018 Jul 181.0
High

CVE-2018-0350

2018 Jul 181.0
High

CVE-2018-0350

2018 Jul 181.0
High

CVE-2018-0350

2018 Jul 181.0
High

CVE-2018-0347

2018 Jul 181.0
High

CVE-2018-0347

2018 Jul 181.0
High

CVE-2018-0347

2018 Jul 181.0
High

CVE-2018-0372

2018 Jul 181.0
High

CVE-2018-0372

2018 Jul 181.0
High

CVE-2018-0372

2018 Jul 181.0

High Severity Vulnerabilities

Medium

CVE-2018-0387

2018 Jul 181.0
Medium

CVE-2018-0387

2018 Jul 181.0
Medium

CVE-2018-0387

2018 Jul 181.0
Medium

CVE-2018-0380

2018 Jul 181.0
Medium

CVE-2018-0380

2018 Jul 181.0
Medium

CVE-2018-0380

2018 Jul 181.0
Medium

CVE-2018-0390

2018 Jul 181.0
Medium

CVE-2018-0390

2018 Jul 181.0
Medium

CVE-2018-0390

2018 Jul 181.0
Medium

CVE-2018-0396

2018 Jul 181.0
Medium

CVE-2018-0396

2018 Jul 181.0
Medium

CVE-2018-0396

2018 Jul 181.0
Medium

CVE-2018-0400
CVE-2018-0401 

2018 Jul 181.0
Medium

CVE-2018-0400
CVE-2018-0401 

2018 Jul 181.0
Medium

CVE-2018-0400
CVE-2018-0401 

2018 Jul 181.0
Medium

CVE-2018-0343

2018 Jul 181.0
Medium

CVE-2018-0343

2018 Jul 181.0
Medium

CVE-2018-0343

2018 Jul 181.0
Medium

CVE-2018-0344

2018 Jul 181.0
Medium

CVE-2018-0344

2018 Jul 181.0
Medium

CVE-2018-0344

2018 Jul 181.0
Medium

CVE-2018-0342

2018 Jul 181.0
Medium

CVE-2018-0342

2018 Jul 181.0
Medium

CVE-2018-0342

2018 Jul 181.0
Medium

CVE-2018-0392

2018 Jul 181.0
Medium

CVE-2018-0392

2018 Jul 181.0
Medium

CVE-2018-0392

2018 Jul 181.0
Medium

CVE-2018-0393

2018 Jul 181.0
Medium

CVE-2018-0393

2018 Jul 181.0
Medium

CVE-2018-0393

2018 Jul 181.0
Medium

CVE-2018-0398
CVE-2018-0399

2018 Jul 181.0
Medium

CVE-2018-0398
CVE-2018-0399

2018 Jul 181.0
Medium

CVE-2018-0398
CVE-2018-0399

2018 Jul 181.0
 Medium

CVE-2018-0394

2018 Jul 181.0
 Medium

CVE-2018-0394

2018 Jul 181.0
 Medium

CVE-2018-0394

2018 Jul 181.0

With the last security update, Cisco fixed 8 vulnerabilities that affected various Cisco products and one of those flaws allow remote attackers to execute the arbitrary code and taking the system control.

Also Read

Oracle Releases Critical Patch Update that Covers 334 Vulnerabilities Across All the Products

Debian 9.5 Released With Fix for Spectre v2 and Other Security Issues

Cisco Released Security Updates and Fixed Critical Vulnerabilities that Affected Cisco Products

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Silver Fox APT Hackers Target Healthcare Services to Steal Sensitive Data

A sophisticated cyber campaign orchestrated by the Chinese Advanced Persistent Threat (APT) group, Silver...

Ghostwriter Malware Targets Government Organizations with Weaponized XLS File

A new wave of cyberattacks attributed to the Ghostwriter Advanced Persistent Threat (APT) group...

LCRYX Ransomware Attacks Windows Machines by Blocking Registry Editor and Task Manager

The LCRYX ransomware, a malicious VBScript-based threat, has re-emerged in February 2025 after its...

Threat Actors Using Ephemeral Port 60102 for Covert Malware Communications

Recent cybersecurity investigations have uncovered a sophisticated technique employed by threat actors to evade...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Ghidra 11.3 Released – A Major Update to NSA’s Open-Source Tool

The National Security Agency (NSA) has officially released Ghidra 11.3, the latest iteration of...

Android Security Update Fixes Linux Kernel RCE Flaw Allow Read/Write Access

On February 3, 2025, Google published its February Android Security Bulletin, which addresses a...

Beware of SmartApeSG Campaigns that Deliver NetSupport RAT

SmartApeSG, a FakeUpdate cyber threat, has emerged as a significant vector for delivering NetSupport...