Mar
4
2013

February 2013: four Cisco vulnerabilities

An article by Fabio Semperboni Exploit

The Cisco Product Security Incident Response Team (PSIRT) has published four important vulnerability advisories: Cisco Unified Communications Manager Multiple Denial of Service Vulnerabilities Cisco Prime Central for Hosted Collaboration Solution Assurance Excessive CPU Utilization Vulnerability Cisco Unified Presence Server Denial of Service Vulnerability Cisco ATA 187 Analog Telephone Adaptor Remote Access Vulnerability Cisco Unified Communications Manager Multiple Denial of Service Vulnerabilities Cisco Unified Communications Manager contains two vulnerabilities that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. Exploitation of these vulnerabilities could cause an interruption of voice services.

Tags: DOS, Remote Control
Continue Reading »
spacer No Comments
Feb
28
2013

NAT Virtual Interface aka NVI, what is that?!

An article by Fabio Semperboni Tutorial

Not everyone knows that from IOS version 12.3(14)T, Cisco has introduced a new feature called NAT Virtual Interface; NVI removes the requirements to configure an interface as either NAT inside or NAT outside. An interface can be configured to use NAT or not use NAT. How to use NVI? It’s easy! You must use the command ‘ip nat source …’ without specifying the inside/outside tag and enable the nat to the interfaces using the command ‘ip nat enable’. For instance, if you use legacy statement:

Tags: Basic configuration, NAT, NVI, PAT, Tips
Continue Reading »
spacer 1 Comment
Feb
22
2013

Cisco Unity Express Multiple Vulnerabilities

An article by Fabio Semperboni Exploit

The Cisco Unity Express software contains two important vulnerabilities: CVE ID: CVE-2013-1114: Cisco Unity Express software prior to version 8.0 contains vulnerabilities that could allow an unauthenticated, remote attacker to conduct cross site scripting attacks.  The vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by sending crafted requests. However, all affected versions of the software have reached End of Software Maintenance or Last Day of Support. CVE ID: CVE-2013-1120: Cisco Unity Express software prior to version 8.0 contains vulnerabilities that could allow an unauthenticated, remote attacker to conduct cross site request forgery attacks.  The vulnerabilities are due [...]

Tags: Cisco Unity Express, Remote Control
Continue Reading »
spacer No Comments
Feb
20
2013

Using route maps for conditional NAT

An article by Fabio Semperboni Tutorial

As explained in a previous article, NAT is the process of modifying IP address information in IP packet headers, while route maps are mainly used to redistribute and manipulate routes (OSPF, BGP, EIGRP, and so on). The question is obvious… What is the relationship between these two features? Static NAT configuration with the route-map option can be used to implement destination-based NAT scenarios where the same inside local address needs to be translated to more than one inside global address, depending on where the traffic is destined.

Tags: Advanced configuration, NAT, route maps
Continue Reading »
spacer No Comments
Feb
16
2013

NAT and PAT: a complete explanation

An article by Fabio Semperboni Tutorial

Network address translation (NAT) is the process of modifying IP address information in IP packet headers while in transit across a traffic routing device. There are two different types of NAT: NAT Static NAT: The simplest type of NAT provides a one-to-one translation of IP addresses. It is often also referred to as one-to-one NAT. In this type of NAT only the IP addresses, IP header checksum and any higher level checksums that include the IP address need to be changed. The rest of the packet can be left untouched (at least for basic TCP/UDP functionality, some higher level protocols may [...]

Tags: Basic configuration, load balancing, NAT, PAT, Protocols
Continue Reading »
spacer 8 Comments
Feb
12
2013

January 2013: five Cisco vulnerabilities

An article by Fabio Semperboni Security Advisory

The Cisco Product Security Incident Response Team (PSIRT) has published five important vulnerability advisories: Portable SDK for UPnP Devices Contains Buffer Overflow Vulnerabilities Multiple Vulnerabilities in Cisco Wireless LAN Controllers Cisco ASA 1000V Cloud Firewall H.323 Inspection Denial of Service Vulnerability Cisco Prime LAN Management Solution Command Execution Vulnerability Cisco Unified IP Phone Local Kernel System Call Input Validation Vulnerability

Tags: ASA, Buffer overflows, DOS, H.323, Remote Control
Continue Reading »
spacer No Comments
Dec
13
2012

November 2012: two Cisco vulnerabilities

An article by Fabio Semperboni Security Advisory

The Cisco Product Security Incident Response Team (PSIRT) has published two important vulnerability advisories: Cisco IronPort Appliances Sophos Anti-Virus Vulnerabilities Cisco Secure Access Control System TACACS+ Authentication Bypass Vulnerability Cisco IronPort Appliances Sophos Anti-Virus Vulnerabilities Cisco IronPort Email Security Appliances (ESA) and Cisco IronPort Web Security Appliances (WSA) include versions of Sophos Anti-Virus that contain multiple vulnerabilities that could allow an unauthenticated, remote attacker to gain control of the system, escalate privileges, or cause a denial-of-service (DoS) condition. An attacker could exploit these vulnerabilities by sending malformed files to an appliance that is running Sophos Anti-Virus. The malformed files could [...]

Tags: ACS, DOS, Ironport, Privilege escalation, Remote Control
Continue Reading »
spacer No Comments
Nov
27
2012

Switchport capture: a good alternative to SPAN port

An article by Fabio Semperboni Tutorial

Do you remember the article “How to analyze traffic with SPAN feature“? The SPAN port is a feature that mirror traffic (on physical or virtual port) to a specific port. In general, behind this ‘destination’ port can be a traffic analyzer (wireshark, ntop and so on…), an IDS or other appliances. The SPAN feature is a good tool but it has two limitations: The number of SPAN sessions that can be configured is limited. A destination port receives copies of sent and received traffic for all monitored source ports. If a destination port is oversubscribed, it can become congested. This [...]

Tags: Advanced configuration, Monitor, Sniffer, SPAN
Continue Reading »
spacer 1 Comment
Nov
16
2012

Cisco DPC2100 Denial of Service

An article by Fabio Semperboni Exploit

Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 6.0 before 6.0.200.0, 7.0 before 7.0.98.216, and 7.0.1xx before 7.0.112.0 allows remote attackers to cause a denial of service (device reload) via a sequence of ICMP packets, aka Bug ID CSCth74426. Solution: Upgrade to the version specified in the vendor advisory or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Tags: DOS, WLC
Continue Reading »
spacer No Comments
Nov
15
2012

Cisco Linksys PlayerPT ActiveX Control Buffer Overflow

An article by Fabio Semperboni Exploit

Cisco Linksys PlayerPT ActiveX is prone to an overflow condition. The SetSource() function fails to properly sanitize user-supplied input resulting in a stack based buffer overflow. With a specially crafted argument, a remote attacker can potentially cause execution of arbitrary code. Solution: Currently, there are no known upgrades or patches to correct this vulnerability. It is possible to correct the flaw by implementing the following workaround: set the kill-bit on the PlayerPT.ocx ActiveX Control [ {9E065E4A-BD9D-4547-8F90-985DC62A5591} ]. See Microsoft KB article 240797 for additional details.

Tags: Buffer overflows, Linksys
Continue Reading »
spacer No Comments
Pages:1234567...21»

  • HTC Facebook Phone Specs Leak, Outlining A Solid Mid-Range Device With FB And Instagram Pre-Loaded t.co/Ub9A5wftS1
  • While It Mulls Global Pricing, BlackBerry May Also Be Prepping Its Z10 For A March 22 AT&T Launch t.co/JeSG9gAAFD
  • MessageMe: A Richer, Faster Messaging App That Quickly Grabs Doodles, Videos & Images t.co/Dz4xYdVvFM
Follow Us on Twitter!

Email Updates

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Random Posts

  • Cisco regular expressions
  • CoPP?! What is that?
  • Speed up your reload
  • Routed versus routing protocols
  • Unicast flooding due to asymmetric routing

Archives

  • March 2013
  • February 2013
  • December 2012
  • November 2012
  • October 2012
  • September 2012
  • August 2012
  • July 2012
  • June 2012
  • May 2012
  • April 2012
  • March 2012
  • February 2012
  • December 2011
  • November 2011
  • October 2011
  • September 2011
  • August 2011
  • July 2011
  • June 2011
  • May 2011
  • April 2011
  • March 2011
  • February 2011
  • January 2011
  • December 2010
  • November 2010
  • October 2010
  • September 2010
  • July 2010
  • June 2010
  • May 2010
  • April 2010
  • March 2010
  • February 2010
  • January 2010
  • December 2009
  • November 2009
  • October 2009
  • September 2009
  • August 2009
  • July 2009
  • June 2009
  • May 2009
  • April 2009
  • March 2009
  • February 2009
  • January 2009
  • December 2008
  • November 2008
  • October 2008
  • September 2008

Links

  • Artik Community
  • Europa Networking
  • GoHacking
  • IptablesWeb
  • WhoisUP

Ciscozine on Facebook


Partners


gipoco.com is neither affiliated with the authors of this page nor responsible for its contents. This is a safe-cache copy of the original web site.