
Cisco has disclosed a high-severity vulnerability in Catalyst Center that could let an unauthenticated remote attacker read arbitrary files from a restricted container. Fixes are available, and Cisco says no workaround addresses the issue.
Tag archive

Cisco has disclosed a high-severity vulnerability in Catalyst Center that could let an unauthenticated remote attacker read arbitrary files from a restricted container. Fixes are available, and Cisco says no workaround addresses the issue.

Ubuntu has published USN-8450-1 addressing four Apache Tomcat vulnerabilities tied to denial of service, potential crashes, possible arbitrary code execution, credential exposure, and authorization bypass risks.

Ubuntu has published USN-8438-1 to address multiple OpenImageIO vulnerabilities that could lead to denial of service or possible arbitrary code execution when handling crafted image files.

Cisco has released fixes for a medium-severity vulnerability in Cisco Catalyst SD-WAN Manager that could let an authenticated remote attacker create or overwrite files through the web UI upload process.