VulnerAlert



CISCO
18-12-2025 01:22
Tags
#hacker
#exploit
#web
#open
#html
#advanced
#cisco
#vulnerability
#affected
#arbitrary
#0-day
#zero-day
#threat
#unpatch
#security
#root
#patched
#patch
#privilege
#intrusion
#flaw
#execute
#compromise
#allow
#attack
#affect
Descripción
Cisco Warns of Active Attacks Exploiting Unpatched 0-Day in AsyncOS Email Security Appliances Cisco has alerted users a maximum-severity zero-day flaw software that been actively exploited by China-nexus advanced persistent threat (APT) actor codenamed UAT-9686 attacks targeting Secure Gateway and Web Manager. The networking equipment major said it became aware the intrusion campaign on December 10, 2025, singled out "limited subset appliances" with certain ports open to internet. It's currently not known how many customers are affected. "This attack allows actors execute arbitrary commands root privileges underlying operating system an affected appliance," advisory. "The ongoing investigation revealed evidence persistence mechanism planted maintain degree control over compromised appliances." as-yet-unpatched vulnerability is being tracked as CVE-2025-20393 , ... https://thehackernews.com/2025/12/cisco-warns-of-active-attacks.html
CVE-2025-20393
Link externo
Ver detalles

Fuente
https://thehackernews.com/2025/12/cisco-warns-of-active-attacks.html
Resultados similares
Coincidentes en almenos en 50% de los tags
17-12-2025 CVE-2025-20393
Cisco is aware of a potential vulnerability.  Cisco is currently investigating and wi...
Ver información
17-12-2025
Cisco warns of unpatched AsyncOS zero-day exploited in attacks ​Cisco warned customers to...
Ver información
Icons made by Freepik from www.flaticon.com
Este Proyecto fue cofinanciado por el Consejo Nacional de Ciencia y Tecnología (CONACYT) a través del PROINNOVA 2021/2023
Proyecto realizado por