Ssh-2.0-cisco-1.25 Vulnerability «HD»
First, you must know which of your devices are running the SSH-2.0-Cisco-1.25 banner or similar vulnerable implementations. Network scanners and configuration management tools can help.
SSH0: Exchanging versions - SSH-2.0-Cisco-1.25 SSH0: send SSH message: outdated is NULL server version string:SSH-2.0-Cisco-1.25
If SSH is not required and the device cannot be upgraded, disable the SSH service entirely and manage the device via console cable (out-of-band management) to remove the remote attack vector. ssh-2.0-cisco-1.25 vulnerability
used by many modern Cisco products. It allows unauthenticated attackers to execute arbitrary code by sending specific messages before authentication occurs. Würth Phoenix Terrapin Attack (CVE-2023-48795)
: Inefficient memory management handles protocol exceptions poorly. First, you must know which of your devices
If your security scanner flagged this banner, it is likely checking for the following vulnerabilities that commonly affect Cisco SSH implementations: SSH Terrapin Prefix Truncation Weakness - Cisco Community
If you have identified devices reporting ssh-2.0-cisco-1.25 , follow this prioritized action plan. used by many modern Cisco products
If you cannot upgrade immediately, manually disable weak algorithms in the CLI: