﻿<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>Cisco Systems</title>
    <description>Cisco Systems</description>
    <link>http://www.routeadmin.com/1home.aspx</link>
    <docs>http://backend.userland.com/rss</docs>
    <generator>RSS.NET: http://www.rssdotnet.com/</generator>
    <item>
      <title>Cisco IOS XR Software Border Gateway Protocol Vulnerability</title>
      <description>Cisco IOS XR Software contains a vulnerability in the Border Gateway Protocol (BGP) feature. The vulnerability manifests itself when a BGP peer announces a prefix with a specific, valid but unrecognized transitive attribute. On receipt of this prefix, the Cisco IOS XR device will corrupt the attribute before sending it to the neighboring devices. Neighboring devices that receive this corrupted update may reset the BGP peering session.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Cisco+IOS+XR+Software+Border+Gateway+Protocol+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b4411f.shtml</link>
      <pubDate>Mon, 06 Sep 2010 14:45:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco Unified Communications Manager Denial of Service Vulnerabilities</title>
      <description>Cisco Unified Communications Manager contains two denial of service (DoS) vulnerabilities that affect the processing of Session Initiation Protocol (SIP) messages. Exploitation of these vulnerabilities could cause an interruption of voice services. &lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Cisco+Unified+Communications+Manager+Denial+of+Service+Vulnerabilities" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b43908.shtml</link>
      <pubDate>Wed, 25 Aug 2010 08:40:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco Unified Presence Denial of Service Vulnerabilities</title>
      <description>Cisco Unified Presence contains two denial of service (DoS) vulnerabilities that affect the processing of Session Initiation Protocol (SIP) messages. Exploitation of these vulnerabilities could cause an interruption of presence services. &lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Cisco+Unified+Presence+Denial+of+Service+Vulnerabilities" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b43909.shtml</link>
      <pubDate>Wed, 25 Aug 2010 08:30:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco IOS Software TCP Denial of Service Vulnerability</title>
      <description>Cisco IOS Software Release, 15.1(2)T is affected by a denial of service (DoS) vulnerability during the TCP establishment phase. The vulnerability could cause embryonic TCP connections to remain in a SYNRCVD or SYNSENT state. Enough embryonic TCP connections in these states could consume system resources and prevent an affected device from accepting or initiating new TCP connections, including any TCP-based remote management access to the device.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Cisco+IOS+Software+TCP+Denial+of+Service+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b4095e.shtml</link>
      <pubDate>Thu, 12 Aug 2010 14:30:00 GMT</pubDate>
    </item>
    <item>
      <title>SQL Injection Vulnerability in Cisco Wireless Control System</title>
      <description>Cisco Wireless Control System (WCS) contains a SQL injection vulnerability that could allow an authenticated attacker full access to the vulnerable device, including modification of system configuration; create, modify and delete users; or modify the configuration of wireless devices managed by WCS.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=SQL+Injection+Vulnerability+in+Cisco+Wireless+Control+System" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b4091e.shtml</link>
      <pubDate>Wed, 11 Aug 2010 09:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Multiple Vulnerabilities in the Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine</title>
      <description>The Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine contain the following DoS vulnerabilities: Real-Time Streaming Protocol (RTSP) inspection DoS vulnerability HTTP, RTSP, and Session Initiation Protocol (SIP) inspection DoS vulnerability Secure Socket Layer (SSL) DoS vulnerability SIP inspection DoS vulnerability &lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Multiple+Vulnerabilities+in+the+Cisco+ACE+Application+Control+Engine+Module+and+Cisco+ACE+4710+Application+Control+Engine" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b4091d.shtml</link>
      <pubDate>Wed, 11 Aug 2010 09:00:00 GMT</pubDate>
    </item>
    <item>
      <title>SNMP Version 3 Authentication Vulnerabilities</title>
      <description>Multiple Cisco products contain either of two authentication vulnerabilities in the Simple Network Management Protocol version 3 (SNMPv3) feature. These vulnerabilities can be exploited when processing a malformed SNMPv3 message. These vulnerabilities could allow the disclosure of network information or may enable an attacker to perform configuration changes to vulnerable devices. The SNMP server is an optional service that is disabled by default in Cisco products. Only SNMPv3 is impacted by these vulnerabilities. Workarounds are available for mitigating the impact of the vulnerabilities described in this document.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=SNMP+Version+3+Authentication+Vulnerabilities" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a00809ac83b.shtml</link>
      <pubDate>Mon, 09 Aug 2010 07:30:00 GMT</pubDate>
    </item>
    <item>
      <title>Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances</title>
      <description>&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Vulnerabilities+in+Cisco+ASA+5500+Series+Adaptive+Security+Appliances" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b3f12f.shtml</link>
      <pubDate>Wed, 04 Aug 2010 09:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Multiple Vulnerabilities in Cisco Firewall Services Module</title>
      <description>&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Multiple+Vulnerabilities+in+Cisco+Firewall+Services+Module" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b3f130.shtml</link>
      <pubDate>Wed, 04 Aug 2010 09:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CDS Internet Streamer: Web Server Directory Traversal Vulnerability</title>
      <description>The Cisco Internet Streamer application, part of the Cisco Content Delivery System, contains a directory traversal vulnerability on its web server component that allows for arbitrary file access. By exploiting this vulnerability, an attacker may be able to read arbitrary files on the device, outside of the web server document directory, by using a specially crafted URL. &lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=CDS+Internet+Streamer:+Web+Server+Directory+Traversal+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b3bd1c.shtml</link>
      <pubDate>Thu, 29 Jul 2010 06:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Transport Layer Security Renegotiation Vulnerability</title>
      <description>An industry-wide vulnerability exists in the Transport Layer Security (TLS) protocol that could impact any Cisco product that uses any version of TLS and SSL. The vulnerability exists in how the protocol handles session renegotiation and exposes users to a potential man-in-the-middle attack.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Transport+Layer+Security+Renegotiation+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b01d1d.shtml</link>
      <pubDate>Thu, 22 Jul 2010 10:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco Secure Desktop ActiveX Control Code Execution Vulnerability</title>
      <description>Updated workarounds.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Cisco+Secure+Desktop+ActiveX+Control+Code+Execution+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b25d01.shtml</link>
      <pubDate>Tue, 13 Jul 2010 06:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco Unified MeetingPlace XSS Vulnerability (November 2007)</title>
      <description>This is the Cisco PSIRT response to an issue that was discovered and reported to Cisco by Joren McReynolds regarding a cross-site scripting (XSS) vulnerability in Cisco Unified MeetingPlace Web Conferencing.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Responses&amp;vs_p=Cisco+Unified+MeetingPlace+XSS+Vulnerability+(November+2007)" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_response09186a00808f0b8f.html</link>
      <pubDate>Thu, 08 Jul 2010 08:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco Unified MeetingPlace XSS Vulnerability</title>
      <description>This is the Cisco PSIRT response to an issue discovered and reported to Cisco by Roger Jefferiss and Rob Pope of SecureTest Ltd, UK regarding cross-site scripting (XSS) vulnerability in Cisco Unified MeetingPlace Web Conferencing.&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Responses&amp;vs_p=Cisco+Unified+MeetingPlace+XSS+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_response09186a008089969e.html</link>
      <pubDate>Thu, 08 Jul 2010 08:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Hard-Coded SNMP Community Names in Cisco Industrial Ethernet 3000 Series Switches Vulnerability</title>
      <description>&lt;img src="http://www.cisco.com/swa/j/zag2_vs_log1.asc?Log=1&amp;vs_f=Cisco+Security+Advisories&amp;vs_p=Hard-Coded+SNMP+Community+Names+in+Cisco+Industrial+Ethernet+3000+Series+Switches+Vulnerability" border="0" height="0" width="0" /&gt;</description>
      <link>http://www.cisco.com/en/US/products/products_security_advisory09186a0080b3891f.shtml</link>
      <pubDate>Wed, 07 Jul 2010 08:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>