It’s been almost three years since a remote code execution vulnerability in the Telnet service on several Cisco appliances was reported, but the company has only just now issued a patch for it – even though a Megasploit module that exploits it has been around for a long time. The vulnerability exists in the email security, web security and content security management appliances.
Here’s the full story:
http://threatpost.com/cisco-patches-three-year-old-telnet-remote-code-execution-bug-in-security-appliances/108980