back to article Cisco warns of security holes in its security appliances

Cisco has alerted customers to another four vulnerabilities in its products, including a high-severity flaw in its email and web security appliances.  The networking giant has issued a patch for that bug, tracked as CVE-2022-20664. The flaw is present in the web management interface of Cisco's Secure Email and Web Manager and …

  1. VoiceOfTruth Silver badge

    Is this in addition to the vulnerabilities in a previous article?

    https://www.theregister.com/2022/06/16/cisco_critical_patches

    -> Cisco noted that its security team is not aware of any in-the-wild exploitation, so far

    If they are using Cisco security products maybe they would not know. Maybe there are so many bugs and bypasses and vulnerabilities in Cisco equipment that they would never know.

    It is time to ban Cisco equipment on the grounds of national insecurity.

    1. diodesign (Written by Reg staff) Silver badge

      Re: Is this in addition to ...

      Ah yup, these four are on top of the ones we wrote about last week.

      C.

      1. Anonymous Coward
        Facepalm

        Re: Is this in addition to ...

        How many times have Cisco and holes appeared in ElReg articles?

    2. elaar

      Re: Is this in addition to the vulnerabilities in a previous article?

      We hear about a lot of Cisco bugs/security flaws, but there is good reason for this.

      Cisco have always been very open about bugs, with a good system to report them and track progress, and if you actually bother to look at the dates they're usually rectified within a week.

      Compare that to other companies that keep security flaws quiet, and some never bother to fix them, it doesn't make them more secure just because you don't hear about their vulns.

      You're always going to have flaws in software, the key is to deal with them transparently and fix them quickly.

      To compare, Fortinet have slightly less than half of the CVEs than Cisco for 2022, but Cisco have 20x more product lines.

      1. VoiceOfTruth Silver badge

        Re: Is this in addition to the vulnerabilities in a previous article?

        I guess you didn't read the article I linked to where Cisco said "sod you" to certain users who bought hardware just 3 years ago. No fixes for them.

  2. Ace2 Silver badge

    “Security appliance”

    1. VoiceOfTruth Silver badge

      Next product, the Cisco Smoke Detector. It doesn't detect smoke if it enters the side of the appliance.

    2. sanmigueelbeer

      The most secure Cisco Security appliance is the one that is still in the box.

  3. Version 1.0 Silver badge
    Joke

    So my password is still safe!

    It's a strong xkcd password

  4. YetAnotherJoeBlow

    Slogan

    Cisco - the Adobe in routing.

    The internets back door - we've got your back!

  5. 1752

    It other news.

    A bear took a dump in the woods

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like