Cisco Patches Critical Flaws in Crosswork and Secure Workload Software
Cisco has released patches for nine vulnerabilities in its Crosswork and Secure Workload software. Four of the flaws, including three with CVSS scores of 10.0, affect Crosswork platforms regardless of device configuration. The issues were discovered during an internal security review and have been addressed in version 7.2.1-SP.
The five vulnerabilities affecting Cisco Secure Workload include improper access control, authentication, and input validation flaws, with three scoring CVSS 10.0. The company has urged customers to apply the necessary updates to avoid future exposure.
Cisco's internal security review has resulted in software hardening releases addressing multiple internally discovered vulnerabilities. This comes after the company resolved 12 bugs impacting Catalyst SD-WAN and IOS XE Software two weeks ago.