Get a Pentest and security assessment of your IT network.

News

Cisco Fixes Critical Vulnerability in Elastic Services Controller

An unauthenticated, remote attacker could exploit the flaw on deployments that have REST API enabled. The security issue is now identified as CVE-2019-1867 and its cause is improper validation of API requests. An attacker leveraging it successfully can bypass authentication on the REST API and run arbitrary actions with administrative privileges. The vulnerability was found internally during security testing and there is no evidence that the glitch has been exploited in the wild. The company rolled out patches for each of its major versions of Software Release 4.1, 4.2,. 4.3, or 4.4.

Source: https://www.bleepingcomputer.com/news/security/cisco-fixes-critical-vulnerability-in-elastic-services-controller/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Reflection of cyber-attack to Wells Fargo in world media

News

CVE-2016-6563 RCE flaw affects D-Link Routers, disable remote admin