Warning: Detecting more than 1000 Cisco router and switch devices in Vietnam has a serious security error
There are more than 1000 Cisco router and switch devices in Vietnam (all devices used in large network environments and core systems) are subject to serious security errors.
There are more than 1000 Cisco router and switch devices in Vietnam (all devices used in large network environments and core systems) are subject to serious security errors.
The Information Security Department (Ministry of Information and Communications) has sent a warning letter about a group of 40 critical safety information points on Cisco routers (switches) and switches (switches). In particular, in the vulnerable Cisco IOS operating system with international error code CVE-2018-0171 exists in the Smart Install function, a function used to manage installation, device deployment and is normally enabled determined.
Bad guys take advantage of this flaw to send a Smart Install fake message to the TCP port 4786 of the device. If successful, a process will be started to reload the device, execute remote code or perform an infinite loop on the device that leads to a denial of service.
Previously, Cisco confirmed information about this vulnerability on its router / switch devices on March 28, 2018. Since then, the CVE-2018-0171 vulnerability has been exploited by bad guys to carry out many cyber-attacks around the world.
According to VARANS, there are more than 1000 devices affected in Vietnam and the country with the most IP range detected. Therefore, users need to be very wary.
The list of Cisco network devices is affected by the vulnerability:
In order to ensure information security and prevent the risk of network attacks, administrators at agencies and organizations check and review network devices that may be affected and fix vulnerabilities.
How to check CVE-2018-0171 vulnerability
To check CVE-2018-0171 vulnerability, administrators can do one of the following:
Method 1: Use tools published by Cisco at the following link: https://github.com/Cisco-Talos/smi_check
Method 2: Run the show vstack config command on the Cisco device. If the device uses the Smart Intstall Client, the following content will appear:
switch # show vstack config | inc Role
Role: Client (SmartInstall enabled)
How to fix security holes on Cisco routers and switches
Method 1: Update and upgrade the operating system for routers and switches according to Cisco's instructions at the following address:
- https://goo.gl/tbYqPu
Method 2: Run the no vstack command on the affected device to turn off the Smart Instal feature if not needed.
Method 3: If you don't use Access List, you can block 4786.
For more information on vulnerability analysis and PoC, you can visit the link below.
- https://goo.gl/hc8saV
See more:
- Warning: GandCrab extortionist code is attacking Vietnam
- Warning of new malware appear like Wannacry, capable of deleting Vietnamese percussion on computer
- Appearing dangerous Android malicious code specializing in stealing chat content on Facebook Messenger, Skype .
You should read it
- List the default password of Cisco routers and switches
- How to use PuTTY on Cisco routers and switches
- Instructions for configuring Cisco routers
- What is Cisco's new programmable switch?
- Extremely powerful Wi-fi transmitter for businesses
- The Linksys smart Wi-Fi router was found to contain information leaks of connected devices
- Cisco Router Configuration Guide 1800 series (Cisco 1801, 1802, 1803, 1811, 1812)
- Review the Cisco RV180 VPN router
- The basics of Cisco Switch Management - Part 2
- Good hackers find and patch the vulnerability for more than 100,000 other routers
- Solution to store over the network from the router
- How to Configure a Cisco Router
Maybe you are interested
How to connect a wireless mouse on Windows 11 How to extract IMG files in Windows 10 10 Best Home Office Work Desks You Can Afford New research shows Tyrannosaurus Tyrannosaurus relies on her sixth sense to 'love'? Xiaomi launched the wireless mouse and Miyu keyboard with voice support, priced at 1.3 million Logitech launches MX Master 3, the world's best office mouse