My customer is impacted by this vulnerability. They have around 300+ ISR4K device. I have couple of questions.
I hope the attacker needs a console access or physical access to the device to trigger the vulnerability? Please confirm the same.
Instead of upgrading the CPLD via Rommon, May I use Hardware-Programmable Firmware Package and upgrade hw-programmable cpld cli to upgrade the CPLD remotely?
... View more