"Cisco Patches Critical Vulnerability in Unity Connection Software"

1 min read
Source: The Hacker News
"Cisco Patches Critical Vulnerability in Unity Connection Software"
Photo: The Hacker News
TL;DR Summary

Cisco has released software updates to fix a critical vulnerability (CVE-2024-20272) in its Unity Connection software that could allow attackers to execute arbitrary commands on the system. The flaw, discovered by security researcher Maxim Suslov, affects versions 12.5 and earlier, as well as version 14. Users are advised to update to the fixed versions to mitigate potential threats. Additionally, Cisco has addressed 11 medium-severity vulnerabilities in its software, but will not release a fix for a command injection bug in WAP371 due to end-of-life status, recommending customers to migrate to the Cisco Business 240AC Access Point.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

1 min

vs 2 min read

Condensed

66%

28296 words

Want the full story? Read the original article

Read on The Hacker News