CERT mailing list archives

Cisco Releases Security Advisory for Prime Infrastructure Command Execution Vulnerability


From: "US-CERT" <US-CERT () ncas us-cert gov>
Date: Wed, 26 Feb 2014 15:25:36 -0600

NCCIC / US-CERT

National Cyber Awareness System:

Cisco Releases Security Advisory for Prime Infrastructure Command Execution Vulnerability [ 
https://www.us-cert.gov/ncas/current-activity/2014/02/26/Cisco-Releases-Security-Advisory-Prime-Infrastructure-Command 
] 02/26/2014 12:32 PM EST 
Original release date: February 26, 2014

Cisco has released a security advisory to address a vulnerability in Cisco Prime Infrastructure software versions 1.2, 
1.3, 1.4, and 2.0 which could allow an unauthenticated, remote attacker to execute arbitrary commands with "root"-level 
privileges.

US-CERT encourages users and administrators to review the Cisco Security Advisory  [ 
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140226-pi ]and apply any necessary 
updates to help mitigate the risk.

 

________________________________________________________________________

This product is provided subject to this Notification [ http://www.us-cert.gov/privacy/notification ] and this Privacy 
& Use [ http://www.us-cert.gov/privacy/ ] policy.

________________________________________________________________________

OTHER RESOURCES: Contact Us [ http://www.us-cert.gov/contact-us/ ] | Security Publications [ 
http://www.us-cert.gov/security-publications ] | Alerts and Tips [ http://www.us-cert.gov/ncas ] | Related Resources [ 
http://www.us-cert.gov/related-resources ] 

STAY CONNECTED: Sign up for email updates [ http://public.govdelivery.com/accounts/USDHSUSCERT/subscriber/new ] 


Current thread: