Jan. 11, 2024, 2:40 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Cisco has resolved a high-severity security vulnerability in Unity Connection that opens the door for unauthenticated attackers to upload malicious files, execute arbitrary commands, and gain root privileges on affected devices.


Details of the Cisco Unity Connection Vulnerability (CVE-2024-20272)


Tracked as CVE-2024-20272, the vulnerability holds a CVSS score of 7.3, although it is categorized with critical severity by Cisco. Importantly, it is non-local, necessitating neither authentication nor privileges, nor user interaction.


Cisco’s advisory attributes the vulnerability to a …

attackers cisco cve cvss cvss score devices door enable files high malicious privileges root score security security vulnerability severity unauthenticated unity unity connection upload vulnerability

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)