← Back to blog

Cisco Patches Nine Critical Vulnerabilities in Crosswork and Secure Workload Platforms

Cisco releases urgent security updates addressing nine flaws in Crosswork and Secure Workload software. Five vulnerabilities carry the maximum CVSS score of 10.0.

TL;DR

  • Cisco released patches for nine security flaws in Crosswork and Secure Workload platforms.
  • Five of the vulnerabilities have a critical CVSS score of 10.0.
  • Four flaws affect multiple Crosswork products regardless of configuration.
  • The update follows an ongoing internal security assessment by Cisco.
  • Organizations using affected systems should apply patches immediately.

Cisco has issued a new set of security updates targeting vulnerabilities across its Crosswork platforms and Secure Workload Software. The patches come as part of an ongoing internal security initiative aimed at strengthening the resilience of its networking solutions.

Among the nine addressed flaws, five have been rated with a critical severity level, scoring a perfect 10.0 on the CVSS scale. These vulnerabilities could potentially allow attackers to execute arbitrary code, cause denial-of-service conditions, or gain unauthorized access to sensitive data.

Vulnerability Overview

  • Nine total vulnerabilities were patched across Cisco's Crosswork and Secure Workload platforms.
  • Five of these received the highest severity rating with a CVSS score of 10.0.
  • Four specific flaws impact Crosswork Data Gateway, Network Controller, and Planning applications universally.
  • The affected systems are vulnerable irrespective of their individual configurations.
  • Successful exploitation could lead to remote code execution or complete system compromise.

Impact and Recommendations

  • Organizations using any of the impacted Cisco platforms should prioritize patch deployment.
  • Administrators are advised to review their environments for the listed CVEs and apply fixes immediately.
  • Cisco's internal security review process continues, suggesting more updates may follow.
  • Unpatched systems remain at risk of exploitation by threat actors monitoring disclosed vulnerabilities.
  • Defensive measures such as network segmentation and monitoring can help mitigate potential exposure.

Sources

Sources

Security email updates

One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.

Cisco Patches Nine Critical Vulnerabilities in Crosswork and Secure Workload Platforms — Agent Breach Blog | Agent Breach