Vulnerability Bulletins

Cisco IOS Software Smart Install Remote Code Execution Vulnerability

   
Affected software Cisco
 
A vulnerability exists in the Smart Install feature of Cisco CatalystSwitches running Cisco IOS Software that could allow anunauthenticated, remote attacker to perform remote code execution on theaffected device.Cisco has released software updates that address this vulnerability. There are no workarounds available to mitigate this vulnerability other than disabling the Smart Install feature.This advisory is posted at

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20110928-smart-install?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20IOS%20Software%20Smart%20Install%20Remote%20Code%20Execution