Cisco Patches Critical Vulnerabilities in Crosswork and Secure Workload
Cisco has released patches for nine vulnerabilities in its Crosswork and Secure Workload platforms, including five rated Critical with CVSS scores of 10.0.
The flaws were identified during internal security testing and could allow authentication bypass, command injection, credential compromise, file manipulation, and other unauthorized actions on affected systems.
Cisco Crosswork is a network automation and operations platform used by service providers and large enterprises to manage network infrastructure, while Secure Workload monitors application communications and enforces segmentation policies.
The company reports that no evidence of active exploitation has been found, but warns that successful exploitation could allow unauthorized access to the platforms and command execution.