#Cisco
29 stories taggedCisco.

Cisco SD-WAN flaw gives attackers admin keys, and someone is already using it
CISA gave federal agencies three days to patch CVE-2026-76504 after evidence the authentication bypass is being exploited in the wild.

Cisco Patches Eight Flaws in Network Software Used by Telecoms Worldwide, Two Rated Near-Maximum Severity
Cisco's own engineers found the vulnerabilities using artificial intelligence tools. No fixes exist beyond the patches, and two of the flaws score 9.8 out of 10 on the standard severity scale.

Nearly 1,000 Windows Fixes in One Month: Two Zero-Days Already Being Exploited
Microsoft's September 2026 Patch Tuesday lands 964 security fixes, two of them already in active use by criminals, plus roughly 20 bugs that could spread automatically across networks.

Cisco firewall manager flaw rated 10 out of 10 is under active attack
A perfect-score bug in Cisco's Secure Firewall Management Center lets attackers take full control without a password. Evidence suggests exploitation started weeks before Cisco confirmed it.

Hackers Are Actively Exploiting a Critical Flaw in Cisco's Email Security Appliance
A zero-day vulnerability in Cisco Secure Email Gateway lets an unauthenticated attacker run any command they like as the most powerful user on the system. No login required.

Cisco's Network Gatekeeper Has a Perfect-10 Flaw and Hackers Are Already Inside
A zero-day in Cisco Identity Services Engine lets anyone on the internet walk past the login screen entirely. Federal agencies have three days to patch. There is no workaround.

Cisco patches critical Nexus 9000 bug that lets attackers run code as root
A flaw tracked as CVE-2026-20212 scores 9.8 out of 10. Cisco also shipped a bundled fix for seven separate IOS XR bugs, two of them equally severe, with no workaround available.

Banning One AI Brand Isn't Enough: Your Model's Family Tree Still Matters
Cisco researchers say that where an AI model is built tells you far less than where it came from. Tracing a model's lineage reveals hidden dependencies and inherited behaviours that a country-of-origin label simply cannot.

Cisco Patches Four Maximum-Severity Flaws in Crosswork Network Software
Fifteen vulnerabilities fixed across Cisco products, with three scoring a perfect 10 out of 10 on the standard severity scale. None are known to be exploited yet.

Cisco firewalls are being crashed through a VPN flaw, and the fix is a full software upgrade
A high-severity bug in Cisco's Secure Firewall ASA and FTD software lets attackers reboot devices remotely with a single crafted web request. Cisco says the attacks started in August.

Cisco Warns Windows Users of High-Severity ClamAV Flaws, Two With Working Attack Code Released
Seven vulnerabilities in the ClamAV antivirus engine affect Cisco's Secure Endpoint Connector software across Windows, macOS, and Linux. Patches land in August.

Cisco Patches a Dozen Flaws in SD-WAN and IOS XE, Three Rated Critical
An internal Cisco security review turned up 12 vulnerabilities, including three with a severity score of 9.8 out of 10, in software that runs corporate networks worldwide.

Cisco Patches 24 Flaws, Including a Perfect-Score Bug That Hands Attackers Full Control
A flaw in Cisco's firewall management software scores a rare 10 out of 10 on the severity scale, meaning a remote attacker needs no password to take complete control of an affected system.

Cisco firewall manager had a hidden password. Attackers found it first.
A built-in account in Cisco Secure Firewall Management Center was exploited as a zero-day in July, and Cisco is telling customers to patch and hunt for a specific log entry.

Cisco's Antares AI Helps Code Reviewers Find Vulnerabilities Faster
Cisco's Antares models narrow a vast codebase down to a ranked shortlist of suspect files, giving security teams a faster path into triage without replacing the humans who do it.