Threat Level: green Handler on Duty: Brad Duncan

SANS ISC: Software Update for Cisco IE 3000 Series Switches - SANS Internet Storm Center SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms:

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Software Update for Cisco IE 3000 Series Switches

Cisco recently released an update to their Industrial Ethernet 3000 (IE 3000) Series switches in which two software versions have a hard-coded SNMP address vulnerability.  A workaround and software update is available.  I would like to point out a detail in this advisory that seems pertinent given the industrial application of these devices.  On the notification page is another advisory: "Prior to deploying software, customers should consult their maintenance provider or check the software for feature set compatibility and known issues specific to their environment" 

--Tony Carothers

150 Posts
ISC Handler
Jul 10th 2010

Sign Up for Free or Log In to start participating in the conversation!