The Smart Cisco Smart VE License System exploited critical security failures




  • Security researchers claim that two Cisco smart license services errors are abusing errors
  • One of the errors is a encoded administration account
  • Both errors were solved in 2024, so users should now update

Cybercriminals are abusing two vulnerabilities found in Cisco Smart Licensing Utility (CSLU) for unknown purposes.

Johannes Ullrich, dean of research at the Sans Technology Institute, said that the threat actors now chain the two security defects to go to the instances of CSLU exposed to the Internet.

Leave a Comment

Your email address will not be published. Required fields are marked *