diff --git a/_cases/2023/DIVD-2023-00038.md b/_cases/2023/DIVD-2023-00038.md index 1d567da6..7457ded5 100644 --- a/_cases/2023/DIVD-2023-00038.md +++ b/_cases/2023/DIVD-2023-00038.md @@ -38,7 +38,8 @@ On October 16th, Cisco disclosed an authentication bypass vulnerability affectin ## Recommendations -No patch is currently available, therefore disable HTTP(S) access to any management interfaces if possible. If HTTP(S) access is required, implement an Access Control List to limit access. +Given that no patch is yet available, disable HTTP(S) access to any management interfaces if possible. If HTTP(S) access is required, implement an Access Control List to limit access. +If your appliance contains an implant, the steps to remediate are rebooting the appliance to neutralize the implant, disabling http(s)-server and removing any privileged accounts in that order. ## What we are doing