CISA’s Comedy of Errors: Cisco and Windows Vulnerabilities Take Center Stage

CISA has issued a warning for US federal agencies to secure systems against vulnerabilities in Cisco and Windows systems. The agency’s advice? Patch it up before your network becomes the next star in a hacker’s horror flick. After all, you don’t want your system to be the next celebrity in the Known Exploited Vulnerabilities catalog.

Pro Dashboard

Hot Take:

Oh, the joys of patching! It’s like a never-ending game of Whack-a-Mole, except the moles are cybercriminals and the mallet is a software update. Federal agencies, better get your patching party hats on because Cisco and Windows are the latest “guests” on CISA’s VIP vulnerability list. Time to secure the gates before the cyber clowns crash the party!

Key Points:

  • CISA warns US federal agencies about vulnerabilities in Cisco and Windows systems.
  • CVE-2023-20118 allows command execution on specific Cisco VPN routers.
  • CVE-2018-8639 is a Win32k elevation of privilege flaw affecting Windows systems.
  • Agencies have until March 23 to patch these vulnerabilities.
  • Microsoft and Cisco advisories remain unchanged following CISA’s alert.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?