Thursday, June 25, 2015

Multiple Default SSH Keys Vulnerabilities in Cisco Virtual WSA, ESA, and SMA

Cisco Web Security Virtual Appliance (WSAv), Cisco Email Security Virtual Appliance (ESAv), and Cisco Security Management Virtual Appliance (SMAv) are affected by the following vulnerabilities:

  • Cisco Virtual WSA, ESA, and SMA Default Authorized SSH Key Vulnerability
  • Cisco Virtual WSA, ESA, and SMA Default SSH Host Keys Vulnerability

Cisco has released free software updates that address these vulnerabilities.
There are no workarounds for these vulnerabilities.

This advisory is available at the following link:
http://ift.tt/1JlFDpV

from Cisco Security Advisory http://ift.tt/1JlFDpV

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.