Cisco fixed 15 vulnerabilities this week in more than a dozen products, including two high severity bugs. The bugs exist in the company s Identity Services Engine and its Videoscape Distribution Suite. The bypass, which exists in ISE, a network administration product, stems from the improper handling of authentication requests and policy assignment. The company also warned on Thursday that several of its products are vulnerable to a bug involving Open Shortest Path First (OSPF) A bug involving the routing protocol for IP networks is also being fixed.
Source: https://threatpost.com/cisco-fixes-dos-authentication-bypass-vulnerabilities-ospf-bug/127185/