Vulnerability Watch

Forum Discussion

snarang's avatar
snarang
Product Team
6 years ago

Cisco Kicks off 2020 by Patching 12 Flaws in Cisco Data...

Cisco Kicks off 2020 by Patching 12 Flaws in Cisco Data Center Network Manager

To ring in the new year, Cisco published advisories for 12 vulnerabilities in Cisco Data Center Network Manager (DCNM). 11 of the vulnerabilities were found and reported to Cisco by Steven Seeley of Source Incite.

The most severe of the 12 vulnerabilities are three authentication bypass flaws, CVE-2019-15975, CVE-2019-15976, CVE-2019-15977 in Cisco’s web-based management interface and the REST API and SOAP API. These flaws exist due to the use of static encryption keys (REST API, SOAP API) and static credentials (web-based management interface).

In addition to these three authentication bypass vulnerabilities, there were nine other vulnerabilities patched in this release.

For more information about these advisories, please check out our blog.

1 Reply

  • Anonymous's avatar
    Anonymous

    Thank you it's really good information