Networking-Forums.com

Professional Discussions => Vendor Advisories => Topic started by: Netwörkheäd on March 26, 2022, 12:17:36 AM

Title: Cisco Security Advisory - Cisco Redundancy Configuration Manager for Cisco StarOS Software Multiple Vulnerabilities
Post by: Netwörkheäd on March 26, 2022, 12:17:36 AM
Cisco Redundancy Configuration Manager for Cisco StarOS Software Multiple Vulnerabilities

<p>Multiple vulnerabilities in Cisco&nbsp;Redundancy Configuration Manager (RCM) for Cisco&nbsp;StarOS Software could allow a unauthenticated, remote attacker to disclose sensitive information or execute arbitrary commands as the <em>root</em> user in the context of the configured container.</p>
<p>For more information about these vulnerabilities, see the&nbsp;<a href="#details">Details</a>&nbsp;section of this advisory.</p>
<p>Cisco&nbsp;has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.</p>
<p>This advisory is available at the following link:<br><a href="https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rcm-vuls-7cS3Nuq" target="_blank">https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rcm-vuls-7cS3Nuq</a></p>

     
         
Security Impact Rating:  Critical
   
   
       
CVE: CVE-2022-20648,CVE-2022-20649
Source: Cisco Redundancy Configuration Manager for Cisco StarOS Software Multiple Vulnerabilities (https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rcm-vuls-7cS3Nuq?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Redundancy%20Configuration%20Manager%20for%20Cisco%20StarOS%20Software%20Multiple%20Vulnerabilities&vs_k=1)