ืคื’ื™ืขื•ืช ื‘ืžืชื’ื™ Cisco Catalyst PON ื”ืžืืคืฉืจืช ื›ื ื™ืกื” ื‘ืืžืฆืขื•ืช telnet ืžื‘ืœื™ ืœื“ืขืช ืืช ื”ืกื™ืกืžื”

ื‘ืขื™ื™ืช ืื‘ื˜ื—ื” ืงืจื™ื˜ื™ืช (CVE-2021-34795) ื–ื•ื”ืชื” ื‘ืžืชื’ื™ื ืžืกื“ืจืช Cisco Catalyst PON CGP-ONT-* (ืจืฉืช ืื•ืคื˜ื™ืช ืคืกื™ื‘ื™ืช), ื”ืžืืคืฉืจืช, ื›ืืฉืจ ืคืจื•ื˜ื•ืงื•ืœ telnet ืžื•ืคืขืœ, ืœื”ืชื—ื‘ืจ ืœืžืชื’ ืขื ื–ื›ื•ื™ื•ืช ืžื ื”ืœ ื‘ืืžืฆืขื•ืช ื—ืฉื‘ื•ืŸ ื ื™ืคื•ื™ ื‘ืื’ื™ื ื™ื“ื•ืข ืžืจืืฉ ืฉื”ืฉืื™ืจ ื”ื™ืฆืจืŸ ื‘ืงื•ืฉื—ื”. ื”ื‘ืขื™ื” ืžื•ืคื™ืขื” ืจืง ื›ืืฉืจ ื™ื›ื•ืœืช ื”ื’ื™ืฉื” ื“ืจืš telnet ืžื•ืคืขืœืช ื‘ื”ื’ื“ืจื•ืช, ื”ืžื•ืฉื‘ืชืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ.

ื‘ื ื•ืกืฃ ืœื ื•ื›ื—ื•ืช ืฉืœ ื—ืฉื‘ื•ืŸ ืขื ืกื™ืกืžื” ื™ื“ื•ืขื” ืžืจืืฉ, ื–ื•ื”ื• ื’ื ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื” (CVE-2021-40112, CVE-2021-40113) ื‘ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜ ื‘ื“ื’ืžื™ ื”ื‘ื•ืจืจ ื”ืžื“ื•ื‘ืจื™ื, ืžื” ืฉืžืืคืฉืจ ืœืชื•ืงืฃ ืœื ืžืื•ืžืช ืฉืขื•ืฉื” ื–ืืช. ืœื ื™ื•ื“ืข ืืช ืคืจืžื˜ืจื™ ื”ื›ื ื™ืกื” ื›ื“ื™ ืœื‘ืฆืข ืืช ื”ืคืงื•ื“ื•ืช ืฉืœื”ื ืขื root ื•ืœื‘ืฆืข ืฉื™ื ื•ื™ื™ื ื‘ื”ื’ื“ืจื•ืช. ื›ื‘ืจื™ืจืช ืžื—ื“ืœ, ื’ื™ืฉื” ืœืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜ ืžื•ืชืจืช ืจืง ืžื”ืจืฉืช ื”ืžืงื•ืžื™ืช, ืืœื ืื ื”ืชื ื”ื’ื•ืช ื–ื• ื ื“ื—ืชื” ื‘ื”ื’ื“ืจื•ืช.

ื‘ืžืงื‘ื™ืœ, ื–ื•ื”ืชื” ื‘ืขื™ื” ื“ื•ืžื” (CVE-2021-40119) ืขื ื”ืชื—ื‘ืจื•ืช ื”ื ื“ืกื™ืช ืžื•ื’ื“ืจืช ืžืจืืฉ ื‘ืžื•ืฆืจ ื”ืชื•ื›ื ื” Cisco Policy Suite, ื‘ื• ื”ื•ืชืงืŸ ืžืคืชื— SSH ืฉื”ื•ื›ืŸ ืžืจืืฉ ืขืœ ื™ื“ื™ ื”ื™ืฆืจืŸ, ื”ืžืืคืฉืจ ืœืชื•ืงืฃ ืžืจื•ื—ืง ืœื”ืจื•ื•ื™ื— ื’ื™ืฉื” ืœืžืขืจื›ืช ืขื ื–ื›ื•ื™ื•ืช ืฉื•ืจืฉ.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”