A critical vulnerability in some end-of-life Cisco routers allowing a remote, unauthenticated attacker to gain root access won’t be fixed. And while Cisco isn’t aware of any in-the-wild exploits of the 9.0-rated bug, tracked as CVE-2023-20025, or a second, less-sever Remote Command Execution flaw that also affects older small business routers, a proof-of-concept exploit does exist. In other words:
Read full article on The Register