<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CiscoZine</title>
	<atom:link href="http://www.ciscozine.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ciscozine.com</link>
	<description>Daily reporting on Cisco technology</description>
	<lastBuildDate>Thu, 02 Feb 2012 08:50:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>How to monitor devices with Cacti</title>
		<link>http://www.ciscozine.com/2012/02/02/how-to-monitor-devices-with-cacti/</link>
		<comments>http://www.ciscozine.com/2012/02/02/how-to-monitor-devices-with-cacti/#comments</comments>
		<pubDate>Thu, 02 Feb 2012 08:50:21 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Basic configuration]]></category>
		<category><![CDATA[Cacti]]></category>
		<category><![CDATA[SNMP]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=928</guid>
		<description><![CDATA[There are many ways to monitor devices: netflow, span port, switchport and so on. Today I will explain how to monitor bandwith, CPU, &#8230; of routers and switches using SNMP and Cacti. Simple Network Management Protocol (SNMP) is an &#8220;Internet-standard protocol for managing devices on IP networks. Devices that typically support SNMP include routers, switches, servers, workstations, printers, modem racks, and more.&#8221; It is used mostly in network management systems to monitor network-attached devices for conditions that warrant administrative attention. SNMP is a component of the Internet Protocol Suite as defined by the Internet Engineering Task Force (IETF). It consists [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2012/02/02/how-to-monitor-devices-with-cacti/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>January 2012: three Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2012/02/01/january-2012-three-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2012/02/01/january-2012-three-cisco-vulnerabilities/#comments</comments>
		<pubDate>Wed, 01 Feb 2012 13:19:21 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=930</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published three important vulnerability advisories: Cisco IronPort Appliances Telnet Remote Code Execution Vulnerability Cisco IP Video Phone E20 Default Root Account Cisco Digital Media Manager Privilege Escalation Vulnerability Cisco IronPort Appliances Telnet Remote Code Execution Vulnerability Cisco IronPort Email Security Appliances (ESA) and Cisco IronPort Security Management Appliances (SMA) contain a vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code with elevated privileges. Vulnerable Products The following Cisco IronPort Email Security Appliances (ESA) and Cisco IronPort Security Management Appliances (SMA) are affected by this vulnerability: Cisco IronPort Email [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2012/02/01/january-2012-three-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November 2011: two Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/12/02/november-2011-two-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/12/02/november-2011-two-cisco-vulnerabilities/#comments</comments>
		<pubDate>Fri, 02 Dec 2011 16:42:57 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Inject data]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=925</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published two important vulnerability advisories: Cisco TelePresence System Integrator C Series and Cisco TelePresence EX Series Device Default Root Account Manufacturing Error Cisco Small Business SRP500 Series Command Injection Vulnerability Cisco TelePresence System Integrator C Series and Cisco TelePresence EX Series Device Default Root Account Manufacturing Error Software that runs on Cisco TelePresence System Integrator C Series and Cisco TelePresence EX Series devices was updated to include secure default configurations beginning with the TC4.0 release. This change was accompanied by the release of Cisco Security Advisory cisco-sa-20110202-tandberg. Vulnerable Products All Cisco [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/12/02/november-2011-two-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>October 2011: ten Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/12/02/october-2011-ten-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/12/02/october-2011-ten-cisco-vulnerabilities/#comments</comments>
		<pubDate>Fri, 02 Dec 2011 16:27:15 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=923</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published ten important vulnerability advisories: Buffer Overflow Vulnerabilities in the Cisco WebEx Player Cisco Unified Contact Center Express Directory Traversal Vulnerability Denial of Service Vulnerability in Cisco Video Surveillance IP Cameras Cisco Security Agent Remote Code Execution Vulnerabilities Cisco Unified Communications Manager Directory Traversal Vulnerability CiscoWorks Common Services Arbitrary Command Execution Vulnerability Cisco Show and Share Security Vulnerabilities Directory Traversal Vulnerability in Cisco Network Admission Control Manager Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500 Series ASA Services Module Multiple Vulnerabilities in Cisco Firewall Services [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/12/02/october-2011-ten-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IP traffic export: how to mirror traffic on a router</title>
		<link>http://www.ciscozine.com/2011/11/17/ip-traffic-export-how-to-mirror-traffic-on-a-router/</link>
		<comments>http://www.ciscozine.com/2011/11/17/ip-traffic-export-how-to-mirror-traffic-on-a-router/#comments</comments>
		<pubDate>Thu, 17 Nov 2011 20:41:12 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Advanced configuration]]></category>
		<category><![CDATA[Dump]]></category>
		<category><![CDATA[IP traffic export]]></category>
		<category><![CDATA[SPAN]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Wireshark]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=910</guid>
		<description><![CDATA[The Switched Port Analyzer (SPAN) feature, which is sometimes called port mirroring or port monitoring, selects network traffic, from a switched port, for analysis by a network analyzer. Unfotunately this feature works only on switches or switches Layer3. And in a router, what can I do to copy the traffic? In a previous article, I explained the Embedded Packet Capture, a powerful feature to capture data packets directly on the NVRAM. Another good solution is the &#8216;IP traffic export&#8216;. Introduced in 12.3(4)T IOS, the IP Traffic Export feature allows users to configure their router to export IP packets that are [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/11/17/ip-traffic-export-how-to-mirror-traffic-on-a-router/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco completes acquisition of BNI Video</title>
		<link>http://www.ciscozine.com/2011/11/15/cisco-completes-acquisition-of-bni-video/</link>
		<comments>http://www.ciscozine.com/2011/11/15/cisco-completes-acquisition-of-bni-video/#comments</comments>
		<pubDate>Tue, 15 Nov 2011 22:47:48 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[New products]]></category>
		<category><![CDATA[BNI Video]]></category>
		<category><![CDATA[Business]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=914</guid>
		<description><![CDATA[Cisco announced it has completed its acquisition of privately-held BNI Video. Headquartered in Boxborough, Mass., BNI Video supplies service providers with two major video products that offer video back-office and content delivery network (CDN) analytic capabilities. The acquisition advances the capabilities of Cisco&#8217;s Videoscape TV platform, which allows service providers to deliver compelling video experiences to any device over any Internet Protocol (IP) network. BNI Video&#8217;s technology also helps Cisco&#8217;s service provider customers reduce their operational costs and complexity, while expanding monetization opportunities. BNI Video is already well recognized by the largest service providers as having built a differentiated solution [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/11/15/cisco-completes-acquisition-of-bni-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco TelePresence exploits</title>
		<link>http://www.ciscozine.com/2011/10/24/cisco-telepresence-exploits/</link>
		<comments>http://www.ciscozine.com/2011/10/24/cisco-telepresence-exploits/#comments</comments>
		<pubDate>Mon, 24 Oct 2011 06:55:58 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>
		<category><![CDATA[TelePresence]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=909</guid>
		<description><![CDATA[Cisco TelePresence is an umbrella term for Video Conferencing Hardware and Software, Infrastructure and Endpoints. The C &#38; MXP Series are the Endpoints used on desks or in boardrooms to provide users with a termination point for Video Conferencing. 1. Post-authentication HTML Injection &#8211; CVE-2011-2544 (CSCtq46488): Cisco TelePresence Endpoints have a web interface (HTTP or HTTPS) for managing, configuring and reporting. It is possible to set the Call ID (with H.323 or SIP) to a HTML value. If a call is made to another endpoint and an authenticated user browses to the web interface on the endpoint receiving the call [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/10/24/cisco-telepresence-exploits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>September 2011: fifteen Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/10/11/september-2011-fifteen-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/10/11/september-2011-fifteen-cisco-vulnerabilities/#comments</comments>
		<pubDate>Tue, 11 Oct 2011 20:16:18 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Access-list]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=906</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published fifteen important vulnerability advisories: Cisco IOS Software IP Service Level Agreement Vulnerability Cisco Identity Services Engine Database Default Credentials Vulnerability Cisco IOS Software IPv6 over MPLS Vulnerabilities Cisco IOS Software IPv6 Denial of Service Vulnerability Cisco 10000 Series Denial of Service Vulnerability Cisco IOS Software Smart Install Remote Code Execution Vulnerability Cisco IOS Software Session Initiation Protocol Denial of Service Vulnerabilities Cisco IOS Software IPS and Zone-Based Firewall Vulnerabilities Cisco IOS Software Data-Link Switching Vulnerability Cisco IOS Software Network Address Translation Vulnerabilities Cisco Unified Communications Manager Session Initiation Protocol Memory [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/10/11/september-2011-fifteen-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Wake on LAN through Internet</title>
		<link>http://www.ciscozine.com/2011/10/04/wake-on-lan-through-internet/</link>
		<comments>http://www.ciscozine.com/2011/10/04/wake-on-lan-through-internet/#comments</comments>
		<pubDate>Tue, 04 Oct 2011 11:48:31 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Arp]]></category>
		<category><![CDATA[Nat]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[WOL]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=898</guid>
		<description><![CDATA[I write this tutorial to show how it is simple wakup a PC through Internet using WOL feature. What is WOL feature? Wake-on-LAN (WOL) is an Ethernet computer networking standard that allows a computer to be turned on or woken up by a network message. The message is usually sent by a program executed on another computer on the same local area network. It is also possible to initiate the message from another network by using Subnet directed broadcasts or a WOL gateway service. Wake-on-LAN is implemented using a special network message called a magic packet. The magic packet contains [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/10/04/wake-on-lan-through-internet/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Cisco completes acquisition of AXIOSS Software Assets</title>
		<link>http://www.ciscozine.com/2011/09/13/cisco-completes-acquisition-of-axioss-software-assets/</link>
		<comments>http://www.ciscozine.com/2011/09/13/cisco-completes-acquisition-of-axioss-software-assets/#comments</comments>
		<pubDate>Tue, 13 Sep 2011 13:02:15 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[New products]]></category>
		<category><![CDATA[Axiom Systems]]></category>
		<category><![CDATA[AXIOSS]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=897</guid>
		<description><![CDATA[Cisco has completed its acquisition of service fulfillment software assets and associated employees from the UK subsidiary (formerly Axiom Systems) of Comptel Corporation (NASDAQ OMX Helsinki: CTL1V).  The acquisition gives Cisco the abilityto extend network and service management technologies across its next-generation Internet Protocol (IP) network platforms, allowing service providers to quickly and efficiently launch new video, data, mobility and cloud services to their customers. Cisco acquired the AXIOSS software suite, a fulfillment platform that strengthens the Cisco service provider management offering by automating ordering and fulfillment.  The software provides management capabilities for network services across Cisco&#8217;s five company priorities.  [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/09/13/cisco-completes-acquisition-of-axioss-software-assets/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>August 2011: five Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/09/12/august-2011-five-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/09/12/august-2011-five-cisco-vulnerabilities/#comments</comments>
		<pubDate>Mon, 12 Sep 2011 12:59:48 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=894</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published five important vulnerability advisories: Apache HTTPd Range Header Denial of Service Vulnerability Denial of Service Vulnerability in Cisco TelePresence Codecs Open Query Interface in Cisco Unified Communications Manager and Cisco Unified Presence Server Cisco Unified Communications Manager Denial of Service Vulnerabilities Denial of Service Vulnerabilities in Cisco Intercompany Media Engine Apache HTTPd Range Header Denial of Service Vulnerability The Apache HTTPd server contains a denial of service vulnerability when it handles multiple, overlapping ranges. Multiple Cisco products may be affected by this vulnerability. Vulnerable Products The following products are confirmed [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/09/12/august-2011-five-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>July 2011: three Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/08/05/july-2011-three-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/08/05/july-2011-three-cisco-vulnerabilities/#comments</comments>
		<pubDate>Fri, 05 Aug 2011 13:17:51 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Privilege escalation]]></category>
		<category><![CDATA[Remote Control]]></category>
		<category><![CDATA[SQL injection]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=892</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published three important vulnerability advisories: Cisco TelePresence Recording Server Default Credentials for Root Account Vulnerability Cisco SA 500 Series Security Appliances Web Management Interface Vulnerabilities Cisco ASR 9000 Series Routers Line Card IP Version 4 Denial of Service Vulnerability &#160; Cisco TelePresence Recording Server Default Credentials for Root Account Vulnerability Cisco TelePresence Recording Server Software Release 1.7.2.0 includes a root administrator account that is enabled by default. Successful exploitation of the vulnerability could allow a remote attacker to use these default credentials to modify the system configuration and settings. Vulnerable Products [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/08/05/july-2011-three-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco AnyConnect VPN Client ActiveX URL Property Download and Execute exploit</title>
		<link>http://www.ciscozine.com/2011/07/07/cisco-anyconnect-vpn-client-activex-url-property-download-and-execute-exploit/</link>
		<comments>http://www.ciscozine.com/2011/07/07/cisco-anyconnect-vpn-client-activex-url-property-download-and-execute-exploit/#comments</comments>
		<pubDate>Thu, 07 Jul 2011 13:36:01 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[AnyConnect VPN Client]]></category>
		<category><![CDATA[Privilege escalation]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=890</guid>
		<description><![CDATA[The Cisco AnyConnect Secure Mobility Client, previously known as the Cisco AnyConnect VPN Client, is affected by the following vulnerabilities: Arbitrary Program Execution Vulnerability Local Privilege Escalation Vulnerability Cisco has released free software updates that address these vulnerabilities. There are no workarounds for this vulnerabilities. Below the source of the exploit (Only for test!). ## # $Id: cisco_anyconnect_exec.rb 12872 2011-06-06 20:15:51Z bannedit $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions. Please see the Metasploit # Framework web site for more information on licensing and terms of [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/07/07/cisco-anyconnect-vpn-client-activex-url-property-download-and-execute-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Unified Operations Manager exploits</title>
		<link>http://www.ciscozine.com/2011/07/06/cisco-unified-operations-manager-exploits/</link>
		<comments>http://www.ciscozine.com/2011/07/06/cisco-unified-operations-manager-exploits/#comments</comments>
		<pubDate>Wed, 06 Jul 2011 09:23:44 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[Directory traversal vulnerability]]></category>
		<category><![CDATA[Remote Control]]></category>
		<category><![CDATA[SQL injection]]></category>
		<category><![CDATA[XSS vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=889</guid>
		<description><![CDATA[Cisco Unified Operations Manager (CuOM) is a NMS for voice developed by Cisco Systems. Operations Manager monitors and evaluates the current status of both the IP communications infrastructure and the underlying transport infrastructure in your network. Multiple vulnerabilities have been identified in Cisco Unified Operations Manager and associated products. These vulnerabilities include: multiple blind SQL injections multiple XSS directory traversal vulnerability Below the source of the exploit (Only for test!). Blind SQL injection vulnerabilities that affect CuOM (CVE-2011-0960): The Variable CCMs of PRTestCreation can trigger a blind SQL injection vulnerability by supplying a single quote, followed by a time delay [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/07/06/cisco-unified-operations-manager-exploits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Security Agent Management Console ‘st_upload’ RCE Exploit</title>
		<link>http://www.ciscozine.com/2011/07/05/cisco-security-agent-management-console-%e2%80%98st_upload%e2%80%99-rce-exploit/</link>
		<comments>http://www.ciscozine.com/2011/07/05/cisco-security-agent-management-console-%e2%80%98st_upload%e2%80%99-rce-exploit/#comments</comments>
		<pubDate>Tue, 05 Jul 2011 09:21:28 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Exploit]]></category>
		<category><![CDATA[Cisco Security Agent]]></category>
		<category><![CDATA[Code execution]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=888</guid>
		<description><![CDATA[Cisco Security Agent provides threat protection for server and desktop computing systems. Cisco Security Agent can function in a standalone manner or can be managed by the Management Center for Cisco Security Agent. The Management Center for Cisco Security Agent is affected by a vulnerability that could allow an unauthenticated attacker to perform remote code execution on the affected device. A successful exploit could allow the attacker to modify agent policies and system configuration and perform other administrative tasks. Note: This vulnerability can be exploited only by sending certain packets to the web management interface, which by default listens on [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/07/05/cisco-security-agent-management-console-%e2%80%98st_upload%e2%80%99-rce-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June 2011: four Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/07/04/june-2011-four-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/07/04/june-2011-four-cisco-vulnerabilities/#comments</comments>
		<pubDate>Mon, 04 Jul 2011 16:27:41 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Privilege escalation]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=886</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published four important vulnerability advisories: Multiple Vulnerabilities in Cisco AnyConnect Secure Mobility Client Multiple Vulnerabilities in Cisco Unified IP Phones 7900 Series Default Credentials Vulnerability in Cisco Network Registrar Default Credentials for root Account on the Cisco Media Experience Engine 5600 Multiple Vulnerabilities in Cisco AnyConnect Secure Mobility Client The Cisco AnyConnect Secure Mobility Client, previously known as the Cisco AnyConnect VPN Client, is affected by the following vulnerabilities: Arbitrary Program Execution Vulnerability Local Privilege Escalation Vulnerability Vulnerable Products The vulnerabilities described in this document apply to the Cisco AnyConnect Secure [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/07/04/june-2011-four-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>EPC: an Embedded Packet Capture</title>
		<link>http://www.ciscozine.com/2011/06/22/epc-an-embedded-packet-capture/</link>
		<comments>http://www.ciscozine.com/2011/06/22/epc-an-embedded-packet-capture/#comments</comments>
		<pubDate>Wed, 22 Jun 2011 12:45:47 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Advanced configuration]]></category>
		<category><![CDATA[Dump]]></category>
		<category><![CDATA[EPC]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Wireshark]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=878</guid>
		<description><![CDATA[Started with IOS 12.4(20)T version, EPC or Embedded Packet Capture, is a powerful feature to capture data packets flowing through, to, and from, a Cisco router. In contrast with SPAN feature, EPC permits to save the dump directly on the NVRAM and for this reason, Embedded Packet Capture is useful whenever a network protocol analyzer might be useful in debugging a problem, but when it&#8217;s not practical to install such a device. The features are: The ability to capture IPv4 and IPv6 packets in the Cisco Express Forwarding path A flexible method for specifying the capture buffer size and type [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/06/22/epc-an-embedded-packet-capture/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>May 2011: five Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/06/01/may-2011-five-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/06/01/may-2011-five-cisco-vulnerabilities/#comments</comments>
		<pubDate>Wed, 01 Jun 2011 06:58:37 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=877</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published five important vulnerability advisories: Cisco Content Delivery System Internet Streamer: Web Server Vulnerability Cisco RVS4000 and WRVS4400N Web Management Interface Vulnerabilities Cisco IOS XR Software IP Packet Vulnerability Cisco XR 12000 Series Shared Port Adapters Interface Processor Vulnerability Cisco IOS XR Software SSHv1 Denial of Service Vulnerability Cisco Content Delivery System Internet Streamer: Web Server Vulnerability The Cisco Internet Streamer application, part of the Cisco Content Delivery System (Cisco CDS), contains a vulnerability in its web server component that could cause the web server engine to crash when processing specially [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/06/01/may-2011-five-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>April 2011: two Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/05/02/april-2011-two-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/05/02/april-2011-two-cisco-vulnerabilities/#comments</comments>
		<pubDate>Mon, 02 May 2011 12:44:16 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Inject data]]></category>
		<category><![CDATA[Privilege escalation]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=872</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published two important vulnerability advisories: Multiple Vulnerabilities in Cisco Unified Communications Manager Cisco Wireless LAN Controllers Denial of Service Vulnerability Multiple Vulnerabilities in Cisco Unified Communications Manager Cisco Unified Communications Manager (previously known as Cisco CallManager) contains the following vulnerabilities: Three denial of service (DoS) vulnerabilities that affect Session Initiation Protocol (SIP) services Directory transversal vulnerability Two SQL injection vulnerabilities Vulnerable Products The following products are affected by at least one of the vulnerabilities that are described in this advisory: Cisco Unified Communications Manager 6.x Cisco Unified Communications Manager 7.x Cisco [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/05/02/april-2011-two-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Speed up your reload</title>
		<link>http://www.ciscozine.com/2011/04/30/speed-up-your-reload/</link>
		<comments>http://www.ciscozine.com/2011/04/30/speed-up-your-reload/#comments</comments>
		<pubDate>Sat, 30 Apr 2011 12:18:37 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Advanced configuration]]></category>
		<category><![CDATA[Reload]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=871</guid>
		<description><![CDATA[How long does it take to reload your router? 3 or 4 minutes? Do you know that is possible to speed up your reboot? If your answer is negative, read how warm reload is faster than cold (classic) reload. Introduced in Cisco IOS Release 12.3(2)T, the warm reload feature allows users to reload their routers without reading images from storage. That is, the Cisco IOS image reboots without ROM monitor mode (ROMMON) intervention by restoring the read-write data from a previously saved copy in the RAM and by starting execution without either copying the image from flash to RAM or [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/04/30/speed-up-your-reload/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How to schedule a reload</title>
		<link>http://www.ciscozine.com/2011/04/28/how-to-schedule-a-reload/</link>
		<comments>http://www.ciscozine.com/2011/04/28/how-to-schedule-a-reload/#comments</comments>
		<pubDate>Thu, 28 Apr 2011 07:19:35 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Reload]]></category>
		<category><![CDATA[Schedule]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=870</guid>
		<description><![CDATA[Not everyone knows that the reload command permits to schedule a reboot system; for instance, to plan a night router restart or during a critical configuration (AAA, vty, and so on&#8230;). There are two ways to schedule a reload system: at: at a specific time/date in: after a time interval The &#8216;at&#8217; keyword permits to schedule a reload of the software to take place at the specified time (using a 24-hour clock). If you specify the month and day, the reload is scheduled to take place at the specified time and date. The following example reloads the router on April [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/04/28/how-to-schedule-a-reload/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IPsec VPN: EzVPN, GRE, DMVPN, VTI, GETVPN</title>
		<link>http://www.ciscozine.com/2011/04/26/ipsec-vpn-ezvpn-gre-dmvpn-vti-getvpn/</link>
		<comments>http://www.ciscozine.com/2011/04/26/ipsec-vpn-ezvpn-gre-dmvpn-vti-getvpn/#comments</comments>
		<pubDate>Tue, 26 Apr 2011 16:21:53 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[DMVPN]]></category>
		<category><![CDATA[EzVPN]]></category>
		<category><![CDATA[GET VPN]]></category>
		<category><![CDATA[GRE over IPsec]]></category>
		<category><![CDATA[IPsec]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[VTI]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=869</guid>
		<description><![CDATA[Internet Protocol Security (IPsec) is a protocol suite for securing Internet Protocol (IP) communications by authenticating and encrypting each IP packet of a communication session. IPsec also includes protocols for establishing mutual authentication between agents at the beginning of the session and negotiation of cryptographic keys to be used during the session. IPsec is an end-to-end security scheme operating in the Internet Layer of the Internet Protocol Suite. It can be used in protecting data flows between a pair of hosts (host-to-host), between a pair of security gateways (network-to-network), or between a security gateway and a host (network-to-host). There are [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/04/26/ipsec-vpn-ezvpn-gre-dmvpn-vti-getvpn/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>March 2011: two Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/04/05/march-2011-two-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/04/05/march-2011-two-cisco-vulnerabilities/#comments</comments>
		<pubDate>Tue, 05 Apr 2011 20:15:45 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=867</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published two important vulnerability advisories: Cisco Network Admission Control Guest Server System Software Authentication Bypass Vulnerability Cisco Secure Access Control System Unauthorized Password Change Vulnerability Cisco Network Admission Control Guest Server System Software Authentication Bypass Vulnerability Cisco Network Admission Control (NAC) Guest Server system software contains a vulnerability in the RADIUS authentication software that may allow an unauthenticated user to access the protected network. Vulnerable Products This vulnerability affects all versions of NAC Guest Server software prior to software version 2.0.3. The software version is displayed on the login page of [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/04/05/march-2011-two-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>March 2011 Bundled Publication Deferred</title>
		<link>http://www.ciscozine.com/2011/03/22/march-2011-bundled-publication-deferred/</link>
		<comments>http://www.ciscozine.com/2011/03/22/march-2011-bundled-publication-deferred/#comments</comments>
		<pubDate>Tue, 22 Mar 2011 10:37:12 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Stories]]></category>
		<category><![CDATA[Earthquake]]></category>
		<category><![CDATA[Japan]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=864</guid>
		<description><![CDATA[Cisco PSIRT regularly discloses vulnerabilities in Cisco IOS Software on the fourth Wednesday in March and September via the Cisco IOS Security Advisory bundle. The next bundled disclosure was planned for Wednesday, March 23, 2011, but Cisco will defer this disclosure until the next scheduled Cisco IOS bundle on September 28, 2011. Cisco has a long-standing policy of disclosing vulnerabilities to customers and the public simultaneously to ensure equal access to patched software. Based on recent events in Japan and eastern Asia, we are sensitive to the fact that customers globally are impacted directly or indirectly by these events and [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/03/22/march-2011-bundled-publication-deferred/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>February 2011: nine Cisco vulnerabilities</title>
		<link>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/</link>
		<comments>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/#comments</comments>
		<pubDate>Tue, 01 Mar 2011 08:19:29 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[Buffer overflows]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Inject data]]></category>
		<category><![CDATA[Remote Control]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=862</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published nine important vulnerability advisories: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Multiple Vulnerabilities in Cisco TelePresence Manager Multiple Vulnerabilities in Cisco TelePresence Recording Server Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances Management Center for Cisco Security Agent Remote Code Execution Vulnerability Default Credentials for Root Account on Tandberg E, EX and C Series Endpoints Multiple Cisco WebEx Player Vulnerabilities Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Multiple [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/03/01/february-2011-nine-cisco-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Decrypt type-7 password with Cisco IOS</title>
		<link>http://www.ciscozine.com/2011/02/16/decrypt-type-7-password-with-cisco-ios/</link>
		<comments>http://www.ciscozine.com/2011/02/16/decrypt-type-7-password-with-cisco-ios/#comments</comments>
		<pubDate>Wed, 16 Feb 2011 10:24:38 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Decrypt]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Vigenere]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=861</guid>
		<description><![CDATA[There are many tools to decrypt Cisco type-7 password, based on Vigenere algorithm. But, what can we do if we can not use these software? The Cisco-IOS method might not be new to some, but those that don’t know about it will find it useful. Suppose you would decrypt these string: username cisco password 7 0718365B000A1016141D11050A2F6527273E username fabio password 7 0110140558004B0224014600110C To find the password, you can use the Cisco Key Chain: Ciscozine(config)#key chain test Ciscozine(config-keychain)#key 1 Ciscozine(config-keychain-key)#key-string 7 0718365B000A1016141D11050A2F6527273E Ciscozine(config-keychain)#key 2 Ciscozine(config-keychain-key)#key-string 7 0110140558004B0224014600110C The &#8220;show key chain&#8221; command displays the password configured in a key chain in cleartext [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/02/16/decrypt-type-7-password-with-cisco-ios/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>How to decode G.729</title>
		<link>http://www.ciscozine.com/2011/02/10/how-to-decode-g-729/</link>
		<comments>http://www.ciscozine.com/2011/02/10/how-to-decode-g-729/#comments</comments>
		<pubDate>Thu, 10 Feb 2011 21:30:23 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[G.729]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[SPAN]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[VoIP]]></category>
		<category><![CDATA[Wireshark]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=858</guid>
		<description><![CDATA[I have decided to write this tutorial (only for test purpose) to show how it is simple decode a G.729 stream using SPAN port, Wireshark, VoiceAge G.729 decoder and Audacity software. What is G.729? G.729 is an audio data compression algorithm for voice that compresses digital voice in packets of 10 milliseconds duration. It is officially described as Coding of speech at 8 kbit/s using conjugate-structure algebraic-code-excited linear prediction. Because of its low bandwidth requirements, G.729 is mostly used in Voice over Internet Protocol (VoIP) applications where bandwidth must be conserved. Standard G.729 operates at a bit rate of 8 [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/02/10/how-to-decode-g-729/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>January 2011: one Cisco vulnerability</title>
		<link>http://www.ciscozine.com/2011/02/03/january-2011-one-cisco-vulnerability/</link>
		<comments>http://www.ciscozine.com/2011/02/03/january-2011-one-cisco-vulnerability/#comments</comments>
		<pubDate>Thu, 03 Feb 2011 09:48:37 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Security Advisory]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Privilege escalation]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=857</guid>
		<description><![CDATA[The Cisco Product Security Incident Response Team (PSIRT) has published one important vulnerability advisory: Cisco Content Services Gateway Vulnerabilities Cisco Content Services Gateway Vulnerabilities A service policy bypass vulnerability exists in the Cisco Content Services Gateway &#8211; Second Generation (CSG2), which runs on the Cisco Service and Application Module for IP (SAMI). Under certain configurations this vulnerability could allow: Customers to access sites that would normally match a billing policy to be accessed without being charged to the end customer Customers to access sites that would normally be denied based on configured restriction policies Vulnerable Products To determine the version [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/02/03/january-2011-one-cisco-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Time-Based access lists</title>
		<link>http://www.ciscozine.com/2011/01/30/time-based-access-lists/</link>
		<comments>http://www.ciscozine.com/2011/01/30/time-based-access-lists/#comments</comments>
		<pubDate>Sun, 30 Jan 2011 19:48:14 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Tutorial]]></category>
		<category><![CDATA[Access-list]]></category>
		<category><![CDATA[Basic configuration]]></category>
		<category><![CDATA[Time]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=855</guid>
		<description><![CDATA[An access list is a sequential list consisting of at least one permit statement and possibly one or more deny statements that apply to IP addresses and possibly upper-layer IP protocols. Time-based ACLs is a Cisco feature introduced in the Release 12.0.1.T to allow access control based on time. The time range, identified by a name, can be &#8216;absolute&#8216; or &#8216;periodic&#8216;. Use time-based access list is easy and can be useful in some situations. To implement it, you need: Define time-range Define ACL, where the time-range is applied to Apply ACL; for istance: to the interface, to the vty, to [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/01/30/time-based-access-lists/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco 2010 Annual Security Report</title>
		<link>http://www.ciscozine.com/2011/01/24/cisco-2010-annual-security-report/</link>
		<comments>http://www.ciscozine.com/2011/01/24/cisco-2010-annual-security-report/#comments</comments>
		<pubDate>Mon, 24 Jan 2011 11:33:06 +0000</pubDate>
		<dc:creator>Fabio Semperboni</dc:creator>
				<category><![CDATA[Stories]]></category>
		<category><![CDATA[Report]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Video]]></category>

		<guid isPermaLink="false">http://www.ciscozine.com/?p=853</guid>
		<description><![CDATA[The Cisco® Annual Security Report provides an overview of the combined security intelligence of the entire Cisco organization. The report encompasses threat information and trends collected between January and December 2010. It also provides a snapshot of the state of security for that period, with special attention paid to key security trends expected for 2011. In response to the last decade of cyber-exploits targeting PC operating systems, PC platform and application vendors have shored up security in their products and taken a more aggressive approach to patching vulnerabilities. As a result, scammers are finding it harder to exploit platforms that [...]]]></description>
		<wfw:commentRss>http://www.ciscozine.com/2011/01/24/cisco-2010-annual-security-report/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

