Close Menu
primehub.blog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Should you buy a Windows mini PC in 2025? My verdict after a week of testing

    September 28, 2025

    26 Incredible Early Amazon Prime Day Camping Gear Deals

    September 28, 2025

    Today’s NYT Mini Crossword Answers for Sept. 28

    September 28, 2025
    Facebook X (Twitter) Instagram
    primehub.blog
    Trending
    • Should you buy a Windows mini PC in 2025? My verdict after a week of testing
    • 26 Incredible Early Amazon Prime Day Camping Gear Deals
    • Today’s NYT Mini Crossword Answers for Sept. 28
    • 12 Best Solo Travel Personal Safety Gear Deals
    • Martin Shkreli can be sued for copying Wu-Tang’s one-of-a-kind record
    • The Best Soft-Sided Luggage to Travel With, According to Our Editors
    • The Best Gutter Sealants, According to Our Hands-On Tests
    • Factor Protein Plus Meals Review (2025): Filling, Not Fattening
    • Home
    • Health
    • Finance
    • Lifestyle
    • Food
    • Travel
    • DIY
    • Eco Living
    • Tech
    primehub.blog
    Home»Tech»As many as 2 million Cisco devices affected by actively exploited 0-day
    Tech

    As many as 2 million Cisco devices affected by actively exploited 0-day

    PrimeHubBy PrimeHubSeptember 25, 2025No Comments2 Mins Read0 Views
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email
    Cisco Systems headquarters in San Jose, California, US, on Monday, Aug. 14, 2023.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    As many as 2 million Cisco devices are susceptible to an actively exploited zeroday that can remotely crash or execute code on vulnerable systems.

    Cisco said Wednesday that the vulnerability, tracked as CVE-2025-20352, was present in all supported versions of Cisco IOS and Cisco IOS XE, the operating system that powers a wide variety of the company’s networking devices. The vulnerability can be exploited by low-privileged users to create a denial-of-service attack or by higher-privileged users to execute code that runs with unfettered root privileges. It carries a severity rating of 7.7 out of a possible 10.

    Exposing SNMP to the Internet? Yep

    “The Cisco Product Security Incident Response Team (PSIRT) became aware of successful exploitation of this vulnerability in the wild after local Administrator credentials were compromised,” Wednesday’s advisory stated. “Cisco strongly recommends that customers upgrade to a fixed software release to remediate this vulnerability.”

    The vulnerability is the result of a stack overflow bug in the IOS component that handles SNMP (simple network management protocol), which routers and other devices use to collect and handle information about devices inside a network. The vulnerability is exploited by sending crafted SNMP packets.

    To execute malicious code, the remote attacker must have possession of read-only community string, an SNMP-specific form of authentication for accessing managed devices. Frequently, such strings ship with devices. Even when modified by an administrator, read-only community strings are often widely known inside an organization. The attacker would also require privileges on the vulnerable systems. With that, the attacker can obtain RCE (remote code execution) capabilities that run as root.

    0day actively affected Cisco devices exploited Million
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    PrimeHub
    • Website

    Related Posts

    Tech

    Should you buy a Windows mini PC in 2025? My verdict after a week of testing

    September 28, 2025
    Tech

    Today’s NYT Mini Crossword Answers for Sept. 28

    September 28, 2025
    Tech

    Martin Shkreli can be sued for copying Wu-Tang’s one-of-a-kind record

    September 28, 2025
    Tech

    Factor Protein Plus Meals Review (2025): Filling, Not Fattening

    September 28, 2025
    Tech

    WWE’s Drew McIntyre Will Be Henry Cavill’s ‘Highlander’ Brother

    September 28, 2025
    Tech

    US labor board drops allegation that Apple’s CEO violated employees’ rights

    September 28, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Editor's Picks

    Should you buy a Windows mini PC in 2025? My verdict after a week of testing

    September 28, 2025

    26 Incredible Early Amazon Prime Day Camping Gear Deals

    September 28, 2025

    Today’s NYT Mini Crossword Answers for Sept. 28

    September 28, 2025

    12 Best Solo Travel Personal Safety Gear Deals

    September 28, 2025
    Latest Posts

    Cuts to ICB nurse leaders ‘risk patient safety’, RCN warns

    August 24, 2025

    TechCrunch Mobility: Waymo’s Big Apple score and Nvidia backs Nuro

    August 24, 2025

    How to Create Your Own Summer to Fall Transition at Home

    August 24, 2025
    Facebook Pinterest WhatsApp Instagram

    News

    • DIY
    • Eco Living
    • Finance
    • Food
    • Health

    catrgories

    • Lifestyle
    • Tech
    • Travel
    • DIY
    • Eco Living

    useful link

    • About Us
    • Contact us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © 2025 primehub.blog. Designed by Pro.
    • About Us
    • Contact us
    • Disclaimer
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.