cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
915
Views
0
Helpful
6
Replies

Cisco Vulnerabilities

Imran Asri
Level 1
Level 1

I have upgraded the switch firmware but the vulnerability is still there. Can anyone help me ?  test.png

6 Replies 6

balaji.bandi
Hall of Fame
Hall of Fame

we are not able to click the links.

what device model, what code was there and what version you upgrade to ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

it was 3750x and upgrading to the latest version. 12.4.e10 if im not mistaken

Latest IOS is 15.2.4E10.

3750-X is end of support so no security updates since October 2019. https://www.cisco.com/c/en/us/products/collateral/switches/catalyst-3560-x-series-switches/eos-eol-notice-c51-736139.html
How exactly did you determine that those vulnerabilities were not fixed?

After upgrading to the latest version, one of my colleague do a mitigation check and it seems the vulnerabilities is still there.

After upgrading to the latest version, one of my colleague do a mitigation check and it seems the vulnerabilities is still there.
Well were they supposed to be fixed in that release (according to the advisories and bug details)?
All security advisories have links to bug IDs which may be different for each platform.  Check the advisory you're interested in then read the fixed versions of IOS for 3750-X to see whether it actually got fixed.  If it's a recently released advisory/vulnerability then it probably will not have been fixed because the platform is end of support (sometimes you'll be lucky and it got fixed for some other platform still in support).  You can't just upgrade and hope that everything is fixed.

If you want your network to be fully up to date and running software with old vulnerabilities fixed then you need to replace out of support kit with new models and keep the software up date while following the advisories.

it was 3750x and upgrading to the latest version. 12.4.e10 if im not mistaken

 

go to device post show version ( also post what is be old version) 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help