Summary
Security updates address 3 new vulnerabilities, one with a severity of “critical” and one with a severity of “high”, in some Cisco products.
Risk
Estimate of impact of the vulnerability on the reference community: High (66.53)
Type
- Privilege Escalation
- Denial of Service
Affected products and/or versions
Cisco
- Meeting Management, versions prior to 3.9.1
- BroadWorks, versions prior to RI.2024.11
Mitigation actions
It is recommended to update the vulnerable products following the instructions provided by the vendor for each affected product and reported in the security bulletins available at the links in the References section.
The following are only the CVEs related to the vulnerabilities with a severity of “critical” and “high”:
References
https://sec.cloudapps.cisco.com/security/center/publicationListing.x
1This estimate is made taking into account several parameters, including: CVSS, availability of patches/workarounds and PoC, diffusion of the affected software/devices in the reference community.