Cisco Smart Installs and Why They’re Not “Informational”
ID: 95c29328-bc4e-5800-9bdf-232d54f5ef15
STIX ID: report--95c29328-bc4e-5800-9bdf-232d54f5ef15
Feed Name: Black Hills Infosec Blog
Threat Score
**Cisco Smart Install enabled by default exposes switches to remote configuration disclosure and takeover.** The post demonstrates finding devices via nmap/Shodan and using SIET to download configurations, highlights reversible/enumerable password types and the ability to upload configs or execute commands, and recommends disabling the feature (no vstack) with references to Cisco advisories.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
